The check_permission_v1 function in base/pkit.py in HP Linux Imaging and Printing (HPLIP) up to and including 3.13.9 does not properly use D-Bus for communication with a polkit authority, which allows local users to bypass intended access restrictions by leveraging a PolkitUnixProcess PolkitSubject race condition via a (1) setuid process or (2) pkexec process.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
hp linux imaging and printing project 3.13.7 |
||
hp linux imaging and printing project 3.13.8 |
||
hp linux imaging and printing project 3.10.6 |
||
hp linux imaging and printing project 3.10.9 |
||
hp linux imaging and printing project 3.12.10 |
||
hp linux imaging and printing project 3.12.11 |
||
hp linux imaging and printing project 3.9.10 |
||
hp linux imaging and printing project 3.9.12 |
||
hp linux imaging and printing project 3.13.4 |
||
hp linux imaging and printing project 2.0 |
||
hp linux imaging and printing project 2.7.10 |
||
hp linux imaging and printing project 3.11.3a |
||
hp linux imaging and printing project 3.11.5 |
||
hp linux imaging and printing project 3.12.6 |
||
hp linux imaging and printing project 3.12.9 |
||
hp linux imaging and printing project 3.9.4b |
||
hp linux imaging and printing project 3.9.6 |
||
hp linux imaging and printing project 3.13.5 |
||
hp linux imaging and printing project 3.13.6 |
||
hp linux imaging and printing project 3.10.2 |
||
hp linux imaging and printing project 3.10.5 |
||
hp linux imaging and printing project 3.11.7 |
||
hp linux imaging and printing project 3.13.2 |
||
hp linux imaging and printing project 3.13.3 |
||
hp linux imaging and printing project 3.9.8 |
||
hp linux imaging and printing project 3.13.9 |
||
hp linux imaging and printing project 1.0 |
||
hp linux imaging and printing project 3.11.1 |
||
hp linux imaging and printing project 3.11.10 |
||
hp linux imaging and printing project 3.11.3 |
||
hp linux imaging and printing project 3.12.2 |
||
hp linux imaging and printing project 3.12.4 |
||
hp linux imaging and printing project 3.9.2 |
||
hp linux imaging and printing project 3.9.4 |