CVE-2026-8631
Critical · CVSS 9.8HP Linux Imaging and Printing (HPLIP) — Integer overflow leading to heap buffer overflow, enabling privilege escalation and/or arbitrary code execution
- CVSS
- 9.8
- nvd
- EPSS
- 1.75%
- 76th pct
- KEV
- No
- Class
- other
- CWE-122, CWE-190, CWE-190
Description
A potential security vulnerability has been identified in the HP Linux Imaging and Printing Software. This potential vulnerability may allow escalation of privileges and/or arbitrary code execution via an integer overflow in the hpcups processing path when handling crafted print data.
Search profile — drives PoC discovery
Symbols hpcupshpsbpi04118integer_overflowprint data processingCWE-122CWE-190
Keywords CVE-2026-8631HPLIPhpcupsinteger overflowheap buffer overflowprivilege escalationarbitrary code executionHP Linux Imaging and Printinghpsbpi04118RHSA-2026:26228RHSA-2026:26297RHSA-2026:26335
Versions: Versions affected as identified in HP advisory hpsbpi04118 and Red Hat errata RHSA-2026:26228, RHSA-2026:26297, RHSA-2026:26335
References
- https://support.hp.com/us-en/document/ish_14942099-14942126-16/hpsbpi04118
- https://access.redhat.com/errata/RHSA-2026:26228
- https://access.redhat.com/errata/RHSA-2026:26297
- https://access.redhat.com/errata/RHSA-2026:26335
- https://access.redhat.com/errata/RHSA-2026:48171
- https://access.redhat.com/errata/RHSA-2026:48586
- https://access.redhat.com/errata/RHSA-2026:48603
- https://access.redhat.com/errata/RHSA-2026:48606
- https://access.redhat.com/errata/RHSA-2026:48959
- https://access.redhat.com/errata/RHSA-2026:48960
- https://access.redhat.com/errata/RHSA-2026:48961
- https://access.redhat.com/security/cve/CVE-2026-8631
Status: enriched · ingested 2026-06-30T06:00:22.000Z · profiled 2026-07-01T18:30:14.000Z