CVE-2013-6402

low
Published 2014-01-05 · Modified 2026-04-29
CVSS v3
VIR risk
2.1

Description

base/pkit.py in HP Linux Imaging and Printing (HPLIP) through 3.13.11 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/hp-pkservice.log temporary file.

Predictions

Exploit likelihood
20%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

No vendor mitigations ingested yet for this CVE. The mitigation-content worker queues fetches as references arrive — check back in a few minutes, or see the references list below.

OS impact

OSVersionStatusFixed in
debian debianbookwormfixed3.13.11-2.1
debian debianbullseyefixed3.13.11-2.1
debian debiansidfixed3.13.11-2.1
debian debiantrixiefixed3.13.11-2.1

Application impact

VendorProductVersionsFixed
hp hplinux_imaging_and_printing_project{"endIncluding":"3.13.11"}
hp hplinux_imaging_and_printing_project3.9.2
hp hplinux_imaging_and_printing_project3.9.4
hp hplinux_imaging_and_printing_project3.9.4b
hp hplinux_imaging_and_printing_project3.9.6
hp hplinux_imaging_and_printing_project3.9.8
hp hplinux_imaging_and_printing_project3.9.10
hp hplinux_imaging_and_printing_project3.9.12
hp hplinux_imaging_and_printing_project3.10.2
hp hplinux_imaging_and_printing_project3.10.5
hp hplinux_imaging_and_printing_project3.10.6
hp hplinux_imaging_and_printing_project3.10.9
hp hplinux_imaging_and_printing_project3.11.1
hp hplinux_imaging_and_printing_project3.11.3
hp hplinux_imaging_and_printing_project3.11.3a
hp hplinux_imaging_and_printing_project3.11.5
hp hplinux_imaging_and_printing_project3.11.7
hp hplinux_imaging_and_printing_project3.11.10
hp hplinux_imaging_and_printing_project3.11.12
hp hplinux_imaging_and_printing_project3.12.2
hp hplinux_imaging_and_printing_project3.12.4
hp hplinux_imaging_and_printing_project3.12.6
hp hplinux_imaging_and_printing_project3.12.9
hp hplinux_imaging_and_printing_project3.12.10
hp hplinux_imaging_and_printing_project3.12.11
hp hplinux_imaging_and_printing_project3.13.2
hp hplinux_imaging_and_printing_project3.13.3
hp hplinux_imaging_and_printing_project3.13.4
hp hplinux_imaging_and_printing_project3.13.5
hp hplinux_imaging_and_printing_project3.13.6
hp hplinux_imaging_and_printing_project3.13.7
hp hplinux_imaging_and_printing_project3.13.8
hp hplinux_imaging_and_printing_project3.13.9
hp hplinux_imaging_and_printing_project3.13.10

References

CWEs

CWE-59

💬 Discuss CVE-2013-6402 on VIR Community →

Community-verified mitigations for this CVE will appear above when contributors publish them.

Verify integrity in audit chain (admin only). AS-IS.