CVE-2012-6108

low
Published 2014-02-15 · Modified 2026-04-29
CVSS v3
CVSS v2
2.1
VIR risk
2.1

Description

HP Linux Imaging and Printing (HPLIP) before 3.13.2 uses world-writable permissions for /var/log/hp and /var/log/hp/tmp, which allows local users to delete log files via standard filesystem operations.

Predictions

Exploit likelihood
20%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

vendor Authored 2026-05-27

Vendor advisory: debian — https://security-tracker.debian.org/tracker/CVE-2012-6108

OS impact

OSVersionStatusFixed in
debian debianbookwormfixed0
debian debianbullseyefixed0
debian debiansidfixed0
debian debiantrixiefixed0

Application impact

VendorProductVersionsFixed
hplinux_imaging_and_printing_project{"endIncluding":"3.13.1"}
hplinux_imaging_and_printing_project1.0
hplinux_imaging_and_printing_project2.0
hplinux_imaging_and_printing_project2.7.10
hplinux_imaging_and_printing_project3.9.2
hplinux_imaging_and_printing_project3.9.4
hplinux_imaging_and_printing_project3.9.4b
hplinux_imaging_and_printing_project3.9.6
hplinux_imaging_and_printing_project3.9.8
hplinux_imaging_and_printing_project3.9.10
hplinux_imaging_and_printing_project3.9.12
hplinux_imaging_and_printing_project3.10.2
hplinux_imaging_and_printing_project3.10.5
hplinux_imaging_and_printing_project3.10.6
hplinux_imaging_and_printing_project3.10.9
hplinux_imaging_and_printing_project3.11.1
hplinux_imaging_and_printing_project3.11.3
hplinux_imaging_and_printing_project3.11.3a
hplinux_imaging_and_printing_project3.11.5
hplinux_imaging_and_printing_project3.11.7
hplinux_imaging_and_printing_project3.11.10
hplinux_imaging_and_printing_project3.12.2
hplinux_imaging_and_printing_project3.12.4
hplinux_imaging_and_printing_project3.12.6
hplinux_imaging_and_printing_project3.12.9
hplinux_imaging_and_printing_project3.12.10
hplinux_imaging_and_printing_project3.12.11

References

CWEs

CWE-264

Verify integrity in audit chain (admin only). AS-IS.