CVE-2026-14544: HP Hplip

Critical severity, CVSS 9.8. EPSS: 1.2% chance of exploitation in the next 30 days.

A flaw was found in HPLIP (HP Linux Imaging and Printing Software). This vulnerability, an incomplete fix for CVE-2026-8631, may allow a remote attacker to escalate privileges or achieve arbitrary code execution. This can occur through an integer overflow in the hpcups processing path when handling specially crafted print data.

Affected products

  • HP Hplip: version 0 only
  • Red Hat Red Hat Enterprise Linux 10: before 0:3.23.12-10.el10_2.5 (fixed in 0:3.23.12-10.el10_2.5)
  • Red Hat Red Hat Enterprise Linux 6
  • Red Hat Red Hat Enterprise Linux 7
  • Red Hat Red Hat Enterprise Linux 8: before 0:3.18.4-14.el8_10 (fixed in 0:3.18.4-14.el8_10)
  • Red Hat Red Hat Enterprise Linux 9: before 0:3.21.2-6.el9_8.5 (fixed in 0:3.21.2-6.el9_8.5)

Published 2026-07-03. Last modified 2026-08-21.