hplip: remote stack overflow vulnerability
Published Jan 20, 2011
7.5
HIGHCVSS 2.0
EPSS 10.81%
Description
Stack-based buffer overflow in the hpmud_get_pml function in io/hpmud/pml.c in Hewlett-Packard Linux Imaging and Printing (HPLIP) 1.6.7, 3.9.8, 3.10.9, and probably other versions allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted SNMP response with a large length value.
Affected products
No data.
- 1.6.7
- 3.9.8
- 3.10.9
No data.
Red Hat Enterprise Linux 5
hplip-0:1.6.7-6.el5_6.1
Fixed · RHSA-2011:0154
Red Hat Enterprise Linux 5
hplip3-0:3.9.8-11.el5_6.1
Fixed · RHSA-2011:0154
Red Hat Enterprise Linux 6
hplip-0:3.9.8-33.el6_0.1
Fixed · RHSA-2011:0154
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 5 | hplip-0:1.6.7-6.el5_6.1 | Fixed | RHSA-2011:0154 |
| Red Hat Enterprise Linux 5 | hplip3-0:3.9.8-11.el5_6.1 | Fixed | RHSA-2011:0154 |
| Red Hat Enterprise Linux 6 | hplip-0:3.9.8-33.el6_0.1 | Fixed | RHSA-2011:0154 |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Metrics
No CVSS v4.0 score for this CVE.
No CVSS v3.1 score for this CVE.
No CVSS v3.0 score for this CVE.
AV:N/AC:L/Au:N/C:P/I:P/A:P
This CVE is not in the KEV list.
No CISA SSVC assessment for this CVE yet.
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 1, 2026.
Score over time
2022–2026- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (16 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 1, 2026 | 10.81% (0.10806) | 95.72th | v5 (v2026.06.15) |
| Jun 15, 2026 | 10.81% (0.10806) | 95.27th | v5 (v2026.06.15) |
| Jul 22, 2025 | 10.22% (0.10217) | 92.78th | v4 (v2025.03.14) |
| Mar 30, 2025 | 8.09% (0.08094) | 91.34th | v4 (v2025.03.14) |
| Mar 29, 2025 | 14.58% (0.14576) | 90.80th | v4 (v2025.03.14) |
| Mar 17, 2025 | 8.09% (0.08094) | 91.52th | v4 (v2025.03.14) |
| Dec 17, 2024 | 8.43% (0.08428) | 94.41th | v3 (v2023.03.01) |
| Sep 10, 2023 | 10.96% (0.10962) | 94.40th | v3 (v2023.03.01) |
| Jul 21, 2023 | 10.01% (0.10009) | 94.09th | v3 (v2023.03.01) |
| Apr 4, 2023 | 9.25% (0.09246) | 93.68th | v3 (v2023.03.01) |
| Mar 7, 2023 | 9.14% (0.09138) | 93.63th | v3 (v2023.03.01) |
| Mar 6, 2023 | 22.37% (0.22373) | 96.62th | v2 (v2022.01.01) |
| Feb 13, 2023 | 22.37% (0.22373) | 96.52th | v2 (v2022.01.01) |
| Feb 3, 2023 | 2.69% (0.02686) | 82.44th | v2 (v2022.01.01) |
| May 4, 2022 | 22.37% (0.22373) | 96.37th | v2 (v2022.01.01) |
| Feb 4, 2022 | 22.37% (0.22373) | 94.36th | v2 (v2022.01.01) |
References (31)
- http://lists.fedoraproject.org/pipermail/package-announce/2011-January/053472.html vendor-advisoryx_refsource_FEDORA
- http://lists.fedoraproject.org/pipermail/package-announce/2011-January/053474.html vendor-advisoryx_refsource_FEDORA
- http://lists.opensuse.org/opensuse-security-announce/2011-01/msg00006.html vendor-advisoryx_refsource_SUSE
- http://lists.opensuse.org/opensuse-security-announce/2011-04/msg00000.html vendor-advisoryx_refsource_SUSE
- http://osvdb.org/70498 vdb-entryx_refsource_OSVDB
- http://secunia.com/advisories/42939 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/42956 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/43022 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/43068 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/43083 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/43102 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/48441 third-party-advisoryx_refsource_SECUNIA
- http://security.gentoo.org/glsa/glsa-201203-17.xml vendor-advisoryx_refsource_GENTOO
- http://www.debian.org/security/2011/dsa-2152 vendor-advisoryx_refsource_DEBIAN
- http://www.mandriva.com/security/advisories?name=MDVSA-2011:013 vendor-advisoryx_refsource_MANDRIVA
- http://www.redhat.com/support/errata/RHSA-2011-0154.html vendor-advisoryx_refsource_REDHAT
- http://www.securityfocus.com/bid/45833 vdb-entryx_refsource_BID
- http://www.securitytracker.com/id?1024967 vdb-entryx_refsource_SECTRACK
- http://www.ubuntu.com/usn/USN-1051-1 vendor-advisoryx_refsource_UBUNTU
- http://www.vupen.com/english/advisories/2011/0136 vdb-entryx_refsource_VUPENVendor Advisory
- http://www.vupen.com/english/advisories/2011/0160 vdb-entryx_refsource_VUPENVendor Advisory
- http://www.vupen.com/english/advisories/2011/0211 vdb-entryx_refsource_VUPEN
- http://www.vupen.com/english/advisories/2011/0212 vdb-entryx_refsource_VUPEN
- http://www.vupen.com/english/advisories/2011/0228 vdb-entryx_refsource_VUPEN
- http://www.vupen.com/english/advisories/2011/0243 vdb-entryx_refsource_VUPEN
- https://access.redhat.com/security/cve/CVE-2010-4267 Vendor Advisory
- https://bugzilla.redhat.com/attachment.cgi?id=468455&action=diff x_refsource_MISC
- https://bugzilla.redhat.com/show_bug.cgi?id=662740 x_refsource_CONFIRMIssue Tracking
- https://exchange.xforce.ibmcloud.com/vulnerabilities/64738 vdb-entryx_refsource_XF
- https://nvd.nist.gov/vuln/detail/CVE-2010-4267
- https://www.cve.org/CVERecord?id=CVE-2010-4267
Change history (0)
No recorded changes yet.