Executive brief
HPLIP is HP's printing and imaging software suite widely deployed across enterprise and consumer systems. Multiple vulnerabilities in HPLIP could allow remote attackers to execute arbitrary code, escalate privileges, disable printing services, access sensitive information, or modify files on affected systems without authorization.
Technical details
HP has patched multiple remotely exploitable vulnerabilities across HPLIP components. The vulnerabilities span several attack classes including remote code execution, privilege escalation, denial of service, and information disclosure, suggesting issues in multiple code paths (parsing, privilege handling, input validation). Attack vectors are primarily network-based or local depending on the specific vulnerability. Patches are now available from HP; administrators should apply updates immediately to all affected HPLIP installations.
Affected products
- HP HPLIP
Timeline
- 2026-09-16: disclosed