REDHAT-BUG-1227252: Low severity hplip (hp linux imaging and printing) vulnerability
It was reported that the hp-plugin utility, included in the hplip package, downloads a binary driver and verifies it via a key specified by the key's short ID:
Downloading plug-in: [\ ] 0% Receiving digital keys: /bin/gpg --homedir /home/test/.hplip/.gnupg --no-permission-warning --keyserver pgp.mit.edu --recv-keys 0xA59047B9
A man-in-the-middle attacker could use this flaw to generate a key with the expected short ID and trick a user into downloading a malicious binary.
Original report:
http://seclists.org/oss-sec/2015/q2/581
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1227252?
The severity of REDHAT-BUG-1227252 is classified as moderate due to the potential for remote code execution.
How do I fix REDHAT-BUG-1227252?
To fix REDHAT-BUG-1227252, update the hplip package to the latest version that addresses this vulnerability.
What systems are affected by REDHAT-BUG-1227252?
REDHAT-BUG-1227252 affects systems that have the hplip package installed.
What does the vulnerability REDHAT-BUG-1227252 involve?
The vulnerability REDHAT-BUG-1227252 involves the hp-plugin utility that downloads a binary driver and verifies it via a specified key.
Is there a workaround for REDHAT-BUG-1227252?
A temporary workaround for REDHAT-BUG-1227252 is to disable the hp-plugin utility until the package is updated.