Candidate: CVE-2012-6108 PublicDate: 2014-02-15 14:57:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-6108 Description: HP Linux Imaging and Printing (HPLIP) before 3.13.2 uses world-writable permissions for /var/log/hp and /var/log/hp/tmp, which allows local users to delete log files via standard filesystem operations. Ubuntu-Description: Notes: jdstrand> Ubuntu 8.04 LTS - 11.10 does not ship /var/log/hp jdstrand> 12.04 LTS - 13.04 not affected (0755 root:root) jdstrand> Debian's hplip 3.12.6-3 not-affected Bugs: https://bugs.archlinux.org/task/32909 Priority: medium Discovered-by: Assigned-to: CVSS: Patches_hplip: upstream_hplip: needs-triage hardy_hplip: not-affected lucid_hplip: not-affected oneiric_hplip: not-affected precise_hplip: not-affected quantal_hplip: not-affected devel_hplip: not-affected