Oval Definition:
oval:org.opensuse.security:def:79857
Revision Date
:
2014-01-17
Version
:
1
Title
:
Security update for hplip
Description
:
hplip was updated to fix three security issues:
*
CVE-2013-0200: Some local file overwrite problems via predictable /tmp filenames were fixed.
*
CVE-2013-4325: hplip used an insecure polkit DBUS API (polkit-process subject race condition) which could lead to local privilege escalation.
*
CVE-2013-6402: hplip uses arbitrary file creation/overwrite (via hardcoded file name /tmp/hp-pkservice.log)
Security Issue references:
* CVE-2013-4325
* CVE-2013-0200
* CVE-2013-6402
Family
:
unix
Class
:
patch
Status
:
Reference(s)
:
808355
835827
836937
852368
CVE-2013-0200
CVE-2013-4325
CVE-2013-6402
Platform(s)
:
SUSE Linux Enterprise Desktop 11 SP2
Product(s)
:
Definition Synopsis
SUSE Linux Enterprise Desktop 11 SP2 is installed
AND
Package Information
hplip-3.11.10-0.6.11.1 is installed
OR
hplip-hpijs-3.11.10-0.6.11.1 is installed
BACK