Alerts This Week
Warning Icon 1 916
Alerts This Week
Warning Icon 1 916

SUSE 2025 0290 1 Critical HPLIP Buffer Overflow Security Issue

suse
Calendar Grey January 29, 2025
Dist Suse Esm H88
SUSE fixes a significant vulnerability in HPLIP via a security update addressing a critical buffer overflow. Users of supported versions are urged to apply this update swiftly.
* bsc#1209401 * bsc#1214399 * bsc#1225777 * bsc#1234745 * jsc#PED-11978

Summary

## This update for hplip fixes the following issues: This update for hplip fixes the following security issues: * CVE-2020-6923: Fixed a memory buffer overflow in the HP Linux Imaging and Printing (HPLIP). (bsc#1234745) This update for hplip fixes the following issues: Update to hplip 3.24.4 (jsc#PED-5846) * Added support for new printers: * Digital Sender Flow 8500 fn2 * HP Color LaserJet Managed FlowMFP E786z * HP Color LaserJet E85055dn * HP Color LaserJet Enterprise 5700 * HP Color LaserJet Enterprise 5700dn * HP Color LaserJet Enterprise 6700 * HP Color LaserJet Enterprise 6700dn * HP Color LaserJet Enterprise 6701 * HP Color LaserJet Enterprise 6701dn * HP Color LaserJet Enterprise Flow MFP 5800zf * HP Color LaserJet Enterprise Flow MFP 6800zf * HP Color LaserJet Enterprise Flow MFP 6800zfsw

References

* bsc#1209401

* bsc#1214399

* bsc#1225777

* bsc#1234745

* jsc#PED-11978

* jsc#PED-5846

Cross-

* CVE-2020-6923

CVSS scores:

* CVE-2020-6923 ( SUSE ): 5.7 CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

* CVE-2020-6923 ( NVD ): 5.7 CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

Affected Products:

* SUSE Linux Enterprise High Performance Computing 12 SP5

* SUSE Linux Enterprise Server 12 SP5

* SUSE Linux Enterprise Server 12 SP5 LTSS

* SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security

* SUSE Linux Enterprise Server for SAP Applications 12 SP5

An update that solves one vulnerability, contains two features and has three

security fixes can now be installed.

##

* https://www.suse.com/security/cve/CVE-2020-6923.html

* https://bugzilla.suse.com/show_bug.cgi?id=1209401

Severity
critical
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2025:0290-1
Release Date: 2025-01-29T16:11:41Z
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here