Oval Definition:oval:com.redhat.rhsa:def:20110154
Revision Date:2011-01-17Version:637
Title:RHSA-2011:0154: hplip security update (Moderate)
Description:Hewlett-Packard Linux Imaging and Printing (HPLIP) provides drivers for Hewlett-Packard printers and multifunction peripherals, and tools for installing, using, and configuring them.

  • A flaw was found in the way certain HPLIP tools discovered devices using the SNMP protocol. If a user ran certain HPLIP tools that search for supported devices using SNMP, and a malicious user is able to send specially-crafted SNMP responses, it could cause those HPLIP tools to crash or, possibly, execute arbitrary code with the privileges of the user running them. (CVE-2010-4267)

    Red Hat would like to thank Sebastian Krahmer of the SuSE Security Team for reporting this issue.

    Users of hplip should upgrade to these updated packages, which contain a backported patch to correct this issue.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2010-4267
    RHSA-2011:0154
    RHSA-2011:0154-01
    RHSA-2011:0154-02
    RHSA-2011:0154-02
    Platform(s):Red Hat Enterprise Linux 5
    Red Hat Enterprise Linux 6
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 6 is installed
  • AND
  • hpijs is earlier than 1:3.9.8-33.el6_0.1
  • AND hpijs is signed with Red Hat redhatrelease2 key
  • hplip is earlier than 0:3.9.8-33.el6_0.1
  • AND hplip is signed with Red Hat redhatrelease2 key
  • hplip-common is earlier than 0:3.9.8-33.el6_0.1
  • AND hplip-common is signed with Red Hat redhatrelease2 key
  • hplip-gui is earlier than 0:3.9.8-33.el6_0.1
  • AND hplip-gui is signed with Red Hat redhatrelease2 key
  • hplip-libs is earlier than 0:3.9.8-33.el6_0.1
  • AND hplip-libs is signed with Red Hat redhatrelease2 key
  • libsane-hpaio is earlier than 0:3.9.8-33.el6_0.1
  • AND libsane-hpaio is signed with Red Hat redhatrelease2 key
  • OR Package Information
  • Red Hat Enterprise Linux 5 is installed
  • AND
  • hpijs is earlier than 1:1.6.7-6.el5_6.1
  • AND hpijs is signed with Red Hat redhatrelease2 key
  • hplip is earlier than 0:1.6.7-6.el5_6.1
  • AND hplip is signed with Red Hat redhatrelease2 key
  • libsane-hpaio is earlier than 0:1.6.7-6.el5_6.1
  • AND libsane-hpaio is signed with Red Hat redhatrelease2 key
  • hpijs3 is earlier than 1:3.9.8-11.el5_6.1
  • AND hpijs3 is signed with Red Hat redhatrelease2 key
  • hplip3 is earlier than 0:3.9.8-11.el5_6.1
  • AND hplip3 is signed with Red Hat redhatrelease2 key
  • hplip3-common is earlier than 0:3.9.8-11.el5_6.1
  • AND hplip3-common is signed with Red Hat redhatrelease2 key
  • hplip3-gui is earlier than 0:3.9.8-11.el5_6.1
  • AND hplip3-gui is signed with Red Hat redhatrelease2 key
  • hplip3-libs is earlier than 0:3.9.8-11.el5_6.1
  • AND hplip3-libs is signed with Red Hat redhatrelease2 key
  • libsane-hpaio3 is earlier than 0:3.9.8-11.el5_6.1
  • AND libsane-hpaio3 is signed with Red Hat redhatrelease2 key
  • BACK