CVE-2015-0839

Description

The hp-plugin utility in HP Linux Imaging and Printing (HPLIP) makes it easier for man-in-the-middle attackers to execute arbitrary code by leveraging use of a short GPG key id from a keyserver to verify print plugin downloads.

Risk Information

Base Score
8.1
MODERATE
Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.496

Associated Vulnerability

VulnerabilityOS Platform
HP Linux Printing and Imaging System (HPLIP) (USN-2699-1) hplip-data_3.12.2-1ubuntu3.5_all.debLinux
HP Linux Printing and Imaging System (HPLIP) (USN-2699-1) hplip-data_3.14.3-0ubuntu3.4_all.debLinux
HP Linux Printing and Imaging System (HPLIP) (USN-2699-1) hplip-data_3.15.2-0ubuntu4.2_all.debLinux
CVE-2015-0839NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234