CVE-2012-6108
Published: 15 February 2014
HP Linux Imaging and Printing (HPLIP) before 3.13.2 uses world-writable permissions for /var/log/hp and /var/log/hp/tmp, which allows local users to delete log files via standard filesystem operations.
Notes
Author | Note |
---|---|
jdstrand | Ubuntu 8.04 LTS - 11.10 does not ship /var/log/hp 12.04 LTS - 13.04 not affected (0755 root:root) Debian's hplip 3.12.6-3 not-affected |