Red Hat Product Errata RHSA-2026:48603 - Security Advisory Issued: 2026-07-30 Updated: 2026-07-30 RHSA-2026:48603 - Security Advisory Overview Updated Packages Synopsis Important: hplip security update Type/Severity Security Advisory: Important Red Hat Lightspeed patch analysis Identify and remediate systems affected by this advisory. View affected systems Topic An update for hplip is now available for Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. Description The hplip packages contain the Hewlett-Packard Linux Imaging and Printing Project (HPLIP), which provides drivers for Hewlett-Packard printers and multi-function peripherals. Security Fix(es): HPLIP: HPLIP: Privilege escalation and arbitrary code execution via operating system command injection (CVE-2026-8632) HPLIP: HPLIP: Arbitrary code execution and privilege escalation via integer overflow in hpcups (CVE-2026-8631) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Solution For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Affected Products Red Hat Enterprise Linux Server - AUS 9.2 x86_64 Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.2 ppc64le Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.2 x86_64 Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.2 aarch64 Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.2 s390x Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 9.2 x86_64 Red Hat Enterprise Linux for ARM 64 - Extended Life Cycle 9.2 aarch64 Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 9.2 ppc64le Red Hat Enterprise Linux for IBM z Systems - Extended Life Cycle 9.2 s390x Fixes BZ - 2480297 - CVE-2026-8632 HPLIP: HPLIP: Privilege escalation and arbitrary code execution via operating system command injection BZ - 2480300 - CVE-2026-8631 HPLIP: HPLIP: Arbitrary code execution and privilege escalation via integer overflow in hpcups CVEs CVE-2026-8631 CVE-2026-8632 References https://access.redhat.com/security/updates/classification/#important Note: More recent versions of these packages may be available. Click a package name for more details. Red Hat Enterprise Linux Server - AUS 9.2 SRPM hplip-3.21.2-6.el9_2.1.src.rpm SHA-256: 6c559b3c70d2b485b1b3df44bc49b131a7c0898e46f914c48dd40d4ecf2d2380 x86_64 hplip-3.21.2-6.el9_2.1.x86_64.rpm SHA-256: 51e53efd3c9503976d3a984228f9e25084416055dc4e1628c910fa1ca30b8287 hplip-common-3.21.2-6.el9_2.1.i686.rpm SHA-256: 515c37784726e71cbcbaebe8bbc9185f0d8bca8e979915e49de88f075075108d hplip-common-3.21.2-6.el9_2.1.x86_64.rpm SHA-256: 42b41d3bc56d2623648941e578407ae1adad37bdb68a8b5df3c14c0a48bb2e39 hplip-debuginfo-3.21.2-6.el9_2.1.i686.rpm SHA-256: cc51a285e5ed4dda82352c574dc251dd1f76127acc76d53dae6f95989c6e0a60 hplip-debuginfo-3.21.2-6.el9_2.1.x86_64.rpm SHA-256: 17c94c10cebdd5d27be0741b68ed65141f260b0fd041e7cd5f6fb953fb50b6c5 hplip-debugsource-3.21.2-6.el9_2.1.i686.rpm SHA-256: cdb99b55100a29e89d9f542b8b47181cd3bed85dd816f3e7cc896cbb9d8c77a6 hplip-debugsource-3.21.2-6.el9_2.1.x86_64.rpm SHA-256: 5090bc4be01fb28fa7a688dad220067498a28e316e6e789c986aaed0ad5919b2 hplip-libs-3.21.2-6.el9_2.1.i686.rpm SHA-256: a1711103b994be17d47c56226e93340a6c44c22e0c1c8ca2f675eb1cfd73dd26 hplip-libs-3.21.2-6.el9_2.1.x86_64.rpm SHA-256: 107f8f1d524eff574ead05d797eb33e27e87ce82d0bc07592b50488fb4fd6e2f hplip-libs-debuginfo-3.21.2-6.el9_2.1.i686.rpm SHA-256: 5e125e202467693dc5ba71fe18af9208455d8c1f5ec31910f182f5c903b217ec hplip-libs-debuginfo-3.21.2-6.el9_2.1.x86_64.rpm SHA-256: 230b289048f64d2958915ed4a16cc337be409be0004056ece916594af1313da9 libsane-hpaio-3.21.2-6.el9_2.1.i686.rpm SHA-256: 27a7b1beeb783ec7b992ac3d02c93228e6b19a74d987811919fdfc875d098b03 libsane-hpaio-3.21.2-6.el9_2.1.x86_64.rpm SHA-256: 56bae4f7dfa972c1ee177f8c87ed0ce8e76d9532bc9dea8802269d9e8b925ddf libsane-hpaio-debuginfo-3.21.2-6.el9_2.1.i686.rpm SHA-256: 6d9685b2ae04de42697aaa343f8b48029219c4f6176f8f6158821761680e9d44 libsane-hpaio-debuginfo-3.21.2-6.el9_2.1.x86_64.rpm SHA-256: 34ba0e6ecb4d24f7acba859cd6448b99071c30974bf8d1871901dafb621cd6d4 Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.2 SRPM hplip-3.21.2-6.el9_2.1.src.rpm SHA-256: 6c559b3c70d2b485b1b3df44bc49b131a7c0898e46f914c48dd40d4ecf2d2380 ppc64le hplip-3.21.2-6.el9_2.1.ppc64le.rpm SHA-256: 69a0b47149100f831bb04c8cf2b56058b488a7e506e3687f4f91d22453a3ec05 hplip-common-3.21.2-6.el9_2.1.ppc64le.rpm SHA-256: 467a41bc12f673cb78d4c8e1b9a4ce6e2e5a29fcac791b88494ca2e4adbc59ab hplip-debuginfo-3.21.2-6.el9_2.1.ppc64le.rpm SHA-256: fc2c754fbc96ff1b1e94ae864a14ad94046840da0dc1e6ce0d37b91d404ec820 hplip-debugsource-3.21.2-6.el9_2.1.ppc64le.rpm SHA-256: 7eff41455bd9aa6437e90213baa899e5e9ba65ea3e7a7b3cd3fee5f1ada5fcc6 hplip-libs-3.21.2-6.el9_2.1.ppc64le.rpm SHA-256: 4c071cbafd3b342fbda69e5f5069e693f3ed8db5a1bf9b8940b21b22f687e2d3 hplip-libs-debuginfo-3.21.2-6.el9_2.1.ppc64le.rpm SHA-256: f4339f45a4f2613a66efb532f19968da43f9932bb393bced383df599b18fa647 libsane-hpaio-3.21.2-6.el9_2.1.ppc64le.rpm SHA-256: 7760a4bc20b4d741afd510c30b77c2a0e17299640c916eda200ce8b7d6440c7e libsane-hpaio-debuginfo-3.21.2-6.el9_2.1.ppc64le.rpm SHA-256: a452c1c016d1b757efaa7296da58a90f10a944b50470e5c42df00eaee1a72434 Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.2 SRPM hplip-3.21.2-6.el9_2.1.src.rpm SHA-256: 6c559b3c70d2b485b1b3df44bc49b131a7c0898e46f914c48dd40d4ecf2d2380 x86_64 hplip-3.21.2-6.el9_2.1.x86_64.rpm SHA-256: 51e53efd3c9503976d3a984228f9e25084416055dc4e1628c910fa1ca30b8287 hplip-common-3.21.2-6.el9_2.1.i686.rpm SHA-256: 515c37784726e71cbcbaebe8bbc9185f0d8bca8e979915e49de88f075075108d hplip-common-3.21.2-6.el9_2.1.x86_64.rpm SHA-256: 42b41d3bc56d2623648941e578407ae1adad37bdb68a8b5df3c14c0a48bb2e39 hplip-debuginfo-3.21.2-6.el9_2.1.i686.rpm SHA-256: cc51a285e5ed4dda82352c574dc251dd1f76127acc76d53dae6f95989c6e0a60 hplip-debuginfo-3.21.2-6.el9_2.1.x86_64.rpm SHA-256: 17c94c10cebdd5d27be0741b68ed65141f260b0fd041e7cd5f6fb953fb50b6c5 hplip-debugsource-3.21.2-6.el9_2.1.i686.rpm SHA-256: cdb99b55100a29e89d9f542b8b47181cd3bed85dd816f3e7cc896cbb9d8c77a6 hplip-debugsource-3.21.2-6.el9_2.1.x86_64.rpm SHA-256: 5090bc4be01fb28fa7a688dad220067498a28e316e6e789c986aaed0ad5919b2 hplip-libs-3.21.2-6.el9_2.1.i686.rpm SHA-256: a1711103b994be17d47c56226e93340a6c44c22e0c1c8ca2f675eb1cfd73dd26 hplip-libs-3.21.2-6.el9_2.1.x86_64.rpm SHA-256: 107f8f1d524eff574ead05d797eb33e27e87ce82d0bc07592b50488fb4fd6e2f hplip-libs-debuginfo-3.21.2-6.el9_2.1.i686.rpm SHA-256: 5e125e202467693dc5ba71fe18af9208455d8c1f5ec31910f182f5c903b217ec hplip-libs-debuginfo-3.21.2-6.el9_2.1.x86_64.rpm SHA-256: 230b289048f64d2958915ed4a16cc337be409be0004056ece916594af1313da9 libsane-hpaio-3.21.2-6.el9_2.1.i686.rpm SHA-256: 27a7b1beeb783ec7b992ac3d02c93228e6b19a74d987811919fdfc875d098b03 libsane-hpaio-3.21.2-6.el9_2.1.x86_64.rpm SHA-256: 56bae4f7dfa972c1ee177f8c87ed0ce8e76d9532bc9dea8802269d9e8b925ddf libsane-hpaio-debuginfo-3.21.2-6.el9_2.1.i686.rpm SHA-256: 6d9685b2ae04de42697aaa343f8b48029219c4f6176f8f6158821761680e9d44 libsane-hpaio-debuginfo-3.21.2-6.el9_2.1.x86_64.rpm SHA-256: 34ba0e6ecb4d24f7acba859cd6448b99071c30974bf8d1871901dafb621cd6d4 Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.2 SRPM hplip-3.21.2-6.el9_2.1.src.rpm SHA-256: 6c559b3c70d2b485b1b3df44bc49b131a7c0898e46f914c48dd40d4ecf2d2380 aarch64 hplip-3.21.2-6.el9_2.1.aarch64.rpm SHA-256: 64e96fd606a16af233018b68ad850d49b820cf6b6f01c77b73932ea73390a38c hplip-common-3.21.2-6.el9_2.1.aarch64.rpm SHA-256: 9208b07b74ca05528ebe3e49aec8852e817e3fc3e0cd41ab8faac25ca3de5502 hplip-debuginfo-3.21.2-6.el9_2.1.aarch64.rpm SHA-256: 0bc563f4dd55a7f94909db35a6a4418845ae89c200483fffd52cafa83c93266c hplip-debugsource-3.21.2-6.el9_2.1.aarch64.rpm SHA-256: d64399ab8cc3acfd5491b2e27d1a4f7cb4be3e44ba6cfa319b3933a53b8acc33 hplip-libs-3.21.2-6.el9_2.1.aarch64.rpm SHA-256: a02846aefa36b71a0ac9fc0491e6f0562a830f91dc6532939c69a5cc7c26e803 hplip-libs-debuginfo-3.21.2-6.el9_2.1.aarch64.rpm SHA-256: be0514e10266b6e9ff6c125c81a92e5606190df204b0b7a8e94f827a218ce273 libsane-hpaio-3.21.2-6.el9_2.1.aarch64.rpm SHA-256: 04142fdb4af50eeafecfc175614762cb730ba12a95f677980521f2558e037d90 libsane-hpaio-debuginfo-3.21.2-6.el9_2.1.aarch64.rpm SHA-256: 8aa8bca626caffa1b5ae2c1095a3b342b47875d3875db35554c8b7a8f65f8e5d Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.2 SRPM hplip-3.21.2-6.el9_2.1.src.rpm SHA-256: 6c559b3c70d2b485b1b3df44bc49b131a7c0898e46f914c48dd40d4ecf2d2380 s390x hplip-3.21.2-6.el9_2.1.s390x.rpm SHA-256: 26c53097ce449bac4186774dc65509a995453a8169e36415c167ef818b7646c6 hplip-common-3.21.2-6.el9_2.1.s390x.rpm SHA-256: 9a5031fda9458b952887da5ba8baba0098f7d3911b0006b30c668676178076c3 hplip-debuginfo-3.21.2-6.el9_2.1.s390x.rpm SHA-256: 9c14ab03cd43dbe7fc3c672cb02e3732598239a292aa15a2635192a59ccdfa2d hplip-debugsource-3.21.2-6.el9_2.1.s390x.rpm SHA-256: 3a8b8829f77901da912f0d5b14b7270fd591eea134c8b98b792f9c6eb71fe945 hplip-libs-3.21.2-6.el9_2.1.s390x.rpm SHA-256: c69ba0f6bfcecaaf4bd8bd6d76d63c2d7724204f08c1c4a5cbce525dcc309c75 hplip-libs-debuginfo-3.21.2-6.el9_2.1.s390x.rpm SHA-256: 5adccaed0a49fb620b7bd27beb8d2d0e4873afa10c4b9a5f3b1b18e8dfabaa48 libsane-hpaio-3.21.2-6.el9_2.1.s390x.rpm SHA-256: 3d5cb6ddbef6c6596667741221c25eaa96d21d7a2fbe8827da3a9580172830b9 libsane-hpaio-debuginfo-3.21.2-6.el9_2.1.s390x.rpm SHA-256: 0da5361bcec0fa0eed0241701fa6dc531e5b118eed17c74d847a0cdb8dc0b848 Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 9.2 SR
Two critical vulnerabilities in HPLIP (CVE-2026-8631, CVSS 9.8, and CVE-2026-8632, CVSS 7.8) allow privilege escalation and arbitrary code execution via OS command injection and an integer overflow in hpcups. All versions of HPLIP prior to version 3.26.4 are affected. The fix requires upgrading to HPLIP version 3.26.4.