{"id":"USN-7202-1","summary":"hplip vulnerability","details":"Kevin Backhouse discovered that HPLIP incorrectly handled certain MDNS\nresponses. A remote attacker could use this issue to cause HPLIP to crash,\nresulting in a denial of service, or possibly execute arbitrary code.\n","modified":"2026-04-27T17:40:16.043688Z","published":"2025-01-13T12:54:35Z","related":["UBUNTU-CVE-2020-6923"],"upstream":["CVE-2020-6923","UBUNTU-CVE-2020-6923"],"references":[{"type":"ADVISORY","url":"https://ubuntu.com/security/notices/USN-7202-1"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2020-6923"}],"affected":[{"package":{"name":"hplip","ecosystem":"Ubuntu:20.04:LTS","purl":"pkg:deb/ubuntu/hplip@3.20.3+dfsg0-2ubuntu0.1?arch=source&distro=focal"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"3.20.3+dfsg0-2ubuntu0.1"}]}],"versions":["3.19.6+dfsg0-1ubuntu1","3.19.8+dfsg0-7","3.19.11+dfsg0-1","3.19.12+dfsg0-1","3.19.12+dfsg0-2","3.19.12+dfsg0-3","3.19.12+dfsg0-3ubuntu1","3.19.12+dfsg0-4ubuntu1","3.20.3+dfsg0-1","3.20.3+dfsg0-2"],"ecosystem_specific":{"availability":"No subscription required","binaries":[{"binary_name":"hpijs-ppds","binary_version":"3.20.3+dfsg0-2ubuntu0.1"},{"binary_name":"hplip","binary_version":"3.20.3+dfsg0-2ubuntu0.1"},{"binary_name":"hplip-data","binary_version":"3.20.3+dfsg0-2ubuntu0.1"},{"binary_version":"3.20.3+dfsg0-2ubuntu0.1","binary_name":"hplip-gui"},{"binary_name":"libhpmud0","binary_version":"3.20.3+dfsg0-2ubuntu0.1"},{"binary_name":"libsane-hpaio","binary_version":"3.20.3+dfsg0-2ubuntu0.1"},{"binary_name":"printer-driver-hpcups","binary_version":"3.20.3+dfsg0-2ubuntu0.1"},{"binary_name":"printer-driver-hpijs","binary_version":"3.20.3+dfsg0-2ubuntu0.1"},{"binary_version":"3.20.3+dfsg0-2ubuntu0.1","binary_name":"printer-driver-postscript-hp"}]},"database_specific":{"cves_map":{"cves":[{"id":"CVE-2020-6923","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H"},{"score":"medium","type":"Ubuntu"}]}],"ecosystem":"Ubuntu:20.04:LTS"},"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-7202-1.json"}}],"schema_version":"1.7.5"}