LWN.net Logo

hplip: authorization bypass

Package(s):hplip CVE #(s):CVE-2013-4325
Created:September 19, 2013 Updated:September 25, 2013
Description: From the Ubuntu advisory:

It was discovered that HPLIP was using polkit in an unsafe manner. A local attacker could possibly use this issue to bypass intended polkit authorizations.

Alerts:
Ubuntu USN-1956-1 2013-09-18
Red Hat RHSA-2013:1274-01 2013-09-19
CentOS CESA-2013:1274 2013-09-20
Fedora FEDORA-2013-17127 2013-09-20
Oracle ELSA-2013-1274 2013-09-19
Scientific Linux SLSA-2013:1274-1 2013-09-19
Fedora FEDORA-2013-17127 2013-09-20
Mageia MGASA-2013-0293 2013-10-05

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds