CVE-2026-14544Disclosure

LOWCVSS 9.8 · CRITICAL

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Patch affected systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft

Recommended action window: High priority (within 72h)

NVD description

A flaw was found in HPLIP (HP Linux Imaging and Printing Software). This vulnerability, an incomplete fix for CVE-2026-8631, may allow a remote attacker to escalate privileges or achieve arbitrary code execution. This can occur through an integer overflow in the hpcups processing path when handling specially crafted print data.

2.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-190

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Threat summary

  • Public PoC is present in monitored signal
  • Patch or workaround signal is available
  • 12 mentions across 6 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 1 signal
  • Patch or workaround mentioned in 9 signals
  • Technical details provided in 10 signals
  • Disclosure: 6 classified signals
  • Peaked 5d ago at 5 mentions (2026-07-03); latest day: 1
  • 12 total mentions across 6 days

Deep dive

Activity timeline12 mentions / 6d
01345Mentions · 2026-07-03: 5Mentions · 2026-07-06: 1Mentions · 2026-07-07: 1Mentions · 2026-07-09: 3Mentions · 2026-07-17: 1Mentions · 2026-08-03: 1PoC Mentioned / Linked · 2026-07-03: 1Patch / Workaround · 2026-07-03: 3Patch / Workaround · 2026-07-06: 1Patch / Workaround · 2026-07-07: 1Patch / Workaround · 2026-07-09: 2Patch / Workaround · 2026-07-17: 1Patch / Workaround · 2026-08-03: 1Technical Details · 2026-07-03: 3Technical Details · 2026-07-06: 1Technical Details · 2026-07-07: 1Technical Details · 2026-07-09: 3Technical Details · 2026-07-17: 1Technical Details · 2026-08-03: 107-0307-0607-0707-0907-1708-03
Signal classification2 categories
Disclosure
650.0%
Patch
650.0%
Referenced assets7 URLs
Classification over time
DateTotalLabels
2026-07-035
Disclosure4Patch1
2026-07-061
Patch1
2026-07-071
Patch1
2026-07-093
Disclosure1Patch2
2026-07-171
Patch1
2026-08-031
Disclosure1
Full discourse12 posts
  • Wazuh@wazuh
    Patch

    HPLIP is affected by CVE-2026-14544 (CVSS 9.8 - Critical), an integer overflow flaw that may allow remote privilege escalation or arbitrary code execution via crafted print data. Apply updates now. Read more: https://ow.ly/zCpW50Zl3fo https://t.co/RyO0ftOVQY

    Post summary

    An advisory urging users to apply updates to mitigate a critical integer overflow flaw in HPLIP that could lead to remote privilege escalation or code execution.

    080103863
    8.2K followersView on X
  • Daily CyberSecurity@Daily_CyberSec
    Patch

    A critical HPLIP vulnerability, CVE-2026-14544 (CVSS 9.8), lets a remote attacker gain arbitrary code execution via crafted print data. Patch now. #HPLIP #LinuxSecurity #RCE #CVE #hpcups #CyberSecurity #Vulnerability #InfoSec http://securityonline.info/hplip-vulnerability-cve-2026-14544/

    Post summary

    CVE-2026-14544 is a critical RCE vulnerability in HPLIP; patches are available and should be applied immediately.

    031731.7K
    12.9K followersView on X
  • Orizon@OrizonCyber
    Patch

    🚨 CVE-2026-14544 — CVSS 9.8/10 ██████████ A flaw was found in HPLIP (HP Linux Imaging and Printing Software). This vulnerability, an incomplete fix for... Severity: CRITICAL Patch now. #cybersecurity #CVE https://t.co/Rey3yW6dRb

    Post summary

    The tweet announces a critical flaw (CVE-2026-14544) in HPLIP with high severity and urges users to apply the newly released patch immediately.

    10010204
    64 followersView on X
  • Tre B@trerbbb
    Disclosure

    hP Linux Imaging and Printing Software Flaw Enables Privilege Escalation Attacks. kernel CVEs cascade. patch the host, expect container escapes to follow within days. #RCE #CVE-2026-14544 https://valtikstudios.com

    Post summary

    CVE‑2026‑14544 is a kernel‑level flaw in HP Linux Imaging and Printing Software that enables privilege escalation via remote code execution; users are urged to patch the host to prevent forthcoming container escapes.

    0000053
    17 followersView on X
  • iototsecnews@iototsecnews
    Patch

    HP Linux Imaging and Printing の脆弱性 CVE-2026-14544:権限昇格と RCE https://iototsecnews.jp/2026/07/10/hp-linux-imaging-and-printing-software-flaw-enables-privilege-escalation-attacks/ 多くの職場で共有される HP Linux Imaging and Printing Software (HPLIP) ですが、過去の不具合の修正が不十分だったことで思わぬ弱点が残ってしまいました。Linux 環境でプリンターを利用するための基盤ツールである HPLIP において、データ処理時の数値計算に起因する問題が見つかりました。今回の発表によると、脆弱性 CVE-2026-14544 を悪用する攻撃者が、ネットワーク経由で細工されたデータを送信するだけで、不正なコマンド実行や管理権限の奪取が生じてしまいます。安全に印刷機能を使い続けるために、アクセス可能なネットワークを信頼できる範囲に絞り、ベンダーから公式の修正パッチが提供され次第、速やかにアップデートを適用する必要があります。 #CVE202614544 #HP #ImagingandPrinting #Linux #Vulnerability

    Post summary

    The article discloses a privilege‑escalation and remote code execution flaw in HPLIP, urges vendors to apply the upcoming official patch, and recommends restricting network access.

    00000135
    501 followersView on X
  • Rıdvan Yağlı@ridvanyagli
    Disclosure

    🔴 HP'nin Linux yazdırma yazılımı HPLIP'te kritik bir RCE açığı tespit edildi! HPLIP'te bulunan CVE-2026-14544 (CVSS 9.8) açığı, hpcups bileşenindeki integer overflow hatası nedeniyle saldırganların kötü amaçlı hazırlanmış bir print job göndererek hedef sistemde uzaktan keyfi kod çalıştırmasına (RCE) olanak tanıyabiliyor. Açık, kimlik doğrulaması veya kullanıcı etkileşimi gerektirmiyor ve daha önce giderildiği düşünülen CVE-2026-8631 açığı için yayınlanan düzeltmenin eksik uygulanmasından kaynaklanıyor. Etkilenen sistemler arasında RHEL 8, RHEL 9 ve RHEL 10 bulunuyor. Özellikle ağ üzerinden erişilebilen yazdırma sunucuları risk altında.

    Post summary

    HP’s HPLIP Linux printing software contains a critical integer‑overflow RCE vulnerability (CVE‑2026‑14544) that can be exploited without authentication, affecting RHEL 8‑10; the note provides technical details but no patch or active exploitation evidence.

    00000171
    1.2K followersView on X
  • The Daily Tech Feed@dailytechonx
    Patch

    A critical flaw in HP's Linux Imaging and Printing software (CVE-2026-14544) allows remote code execution, posing significant risks to Linux systems. Organizations should prioritize mitigation efforts while awaiting official patches. #HP #Linux #HPLIP #CVE202614544 #CyberSecurity #Vulnerability https://thedailytechfeed.com/critical-vulnerability-in-hp-linux-printing-software-exposes-systems-to-remote-code-execution/

    Post summary

    The post announces a remote code‑execution vulnerability in HP's Linux Imaging and Printing software (CVE-2026-14544) and urges organizations to prepare for mitigation while official patches are pending.

    0000085
    500 followersView on X
  • DFIR Lab@DFIR_Lab
    Patch

    🚨 CRITICAL: CVE-2026-14544 in HP Linux Imaging & Printing Software (HPLIP) - CVSS 9.8 Incomplete fix for CVE-2026-8631. Integer overflow enables remote code execution via crafted print data. Patch immediately. #CVE #PatchNow https://t.co/E4POz3KEW8

    Post summary

    Alert about a critical integer overflow in HPLIP that allows remote code execution, with an urgent request to apply the patch.

    0000045
    64 followersView on X
  • Orizon@OrizonCyber
    Disclosure

    🚨 CVE-2026-14544 — CVSS 9.8/10 ██████████ A flaw was found in HPLIP (HP Linux Imaging and Printing Software). This vulnerability, an incomplete fix for... Severity: CRITICAL Patch now. #cybersecurity #CVE

    Post summary

    The post announces the CVE‑2026‑14544 vulnerability with a critical score, notes an incomplete fix, and indicates that a patch is now available.

    00000189
    64 followersView on X
  • VulDB 🛡@vuldb
    Disclosure

    There is a new vulnerability with elevated criticality in Red Hat Enterprise Linux (CVE-2026-14544) https://vuldb.com/vuln/376081

    Post summary

    The post announces a new critical vulnerability (CVE-2026-14544) affecting Red Hat Enterprise Linux, but offers no technical details, PoC, or remediation information.

    0000097
    2.3K followersView on X
  • Upwind Security MDR@UpwindMDR
    Disclosure

    🚨 CRITICAL - HPLIP hpcups integer overflow in print data processing (CVE-2026-14544) CVE-2026-14544 is a critical flaw in HPLIP’s hpcups print processing path (HP’s CUPS filter/driver stack) triggered by specially crafted print data. The underlying issue is an integer overflow due to incorrect bounds/size handling, noted as an incomplete fix for CVE-2026-8631. An attacker can exploit this by sending a malicious print job to a system using hpcups (e.g., via network printing to a shared printer/queue), requiring only the ability to submit print data to the affected pipeline. Successful exploitation can lead to arbitrary code execution in the printing context and potentially privilege escalation to root depending on how the filter is invoked by the spooler. 👉 Affected: hplip (versions with the incomplete CVE-2026-8631 fix; exact range pending vendor advisory) | Upgrade to vendor-fixed release (not yet specified — treat as suspicious)

    Post summary

    A critical integer overflow in HPLIP’s hpcups can enable arbitrary code execution via malicious print jobs; users should upgrade to the vendor‑fixed release once issued.

    0000097
    236 followersView on X
  • ThreatAft@ThreatAft
    Disclosure

    🚨 CRITICAL: CVE-2026-14544 — HPLIP Incomplete Patch Bypass CVSS 9.8. Integer overflow in hpcups enables remote privilege escalation. Original CVE-2026-8631 fix was incomplete. Affects millions of Linux endpoints. 🔗 https://threataft.com/articles/cve-2026-14544-hplip-incomplete-patch-bypass #CyberSecurity #ThreatIntel #Linux

    Post summary

    A critical vulnerability (CVE‑2026‑14544) in HPLIP is disclosed, featuring an integer overflow that enables remote privilege escalation, but no official patch or exploit is referenced in the text.

    0000067
    31 followersView on X

Explore more