Oval Definition:oval:org.opensuse.security:def:79857
Revision Date:2014-01-17Version:1
Title:Security update for hplip
Description:



hplip was updated to fix three security issues:

*

CVE-2013-0200: Some local file overwrite problems via predictable /tmp filenames were fixed.

*

CVE-2013-4325: hplip used an insecure polkit DBUS API (polkit-process subject race condition) which could lead to local privilege escalation.

*

CVE-2013-6402: hplip uses arbitrary file creation/overwrite (via hardcoded file name /tmp/hp-pkservice.log)

Security Issue references:

* CVE-2013-4325 * CVE-2013-0200 * CVE-2013-6402

Family:unixClass:patch
Status:Reference(s):808355
835827
836937
852368
CVE-2013-0200
CVE-2013-4325
CVE-2013-6402
Platform(s):SUSE Linux Enterprise Desktop 11 SP2
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP2 is installed
  • AND Package Information
  • hplip-3.11.10-0.6.11.1 is installed
  • OR hplip-hpijs-3.11.10-0.6.11.1 is installed
  • BACK