CVE-2009-0122

Severity CVSS v4.0:
Pending analysis
Type:
CWE-264 Permissions, Privileges, and Access Control
Publication date:
15/01/2009
Last modified:
31/01/2009

Description

hplip.postinst in HP Linux Imaging and Printing (HPLIP) 2.7.7 and 2.8.2 on Ubuntu allows local users to change the ownership of arbitrary files via unspecified manipulations in advance of an HPLIP installation or upgrade by an administrator, related to the product's attempt to correct the ownership of its configuration files within home directories.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:hp:hplip:2.7.7:*:*:*:*:*:*:*
cpe:2.3:a:hp:hplip:2.8.2:*:*:*:*:*:*:*