ZeroHour
Product

HP Easy Start

0 mentions in 7 days · 1 in 30 days · 1 total · first seen · last

Timeline

HP Easy Start for macOS: CVE-2026-12554 / CVE-2026-12555 / CVE-2026-12556

Cipher Security Labs disclosed three high-severity macOS privilege vulnerabilities in HP Easy Start, fixed in version 2.16.7.260722.

HP Easy Start for macOS contains three high-severity vulnerabilities, CVE-2026-12554, CVE-2026-12555, and CVE-2026-12556, that break the product's macOS privilege boundaries. The issues were researched by Cipher Security Labs and coordinated with HP under advisory HPSBPI04124. Fixes are available in HP Easy Start 2.16.7.260722 and later versions.

Related CVEs

  • Local Privilege Escalation in HP Easy Start for macOS
    HP has disclosed local privilege escalation vulnerabilities in HP Easy Start for macOS, the company's printer installation and setup utility, affecting all versions prior to 2.16.7.260722. The CWE-1104 mapping indicates the flaws are associated with the use of unmaintained third-party components bundled with the tool. Per the CVSS 4.0 vector, a local attacker with only low privileges, and requiring no user interaction, can leverage the flaw to gain escalated privileges with high impact on the confidentiality, integrity, and availability of the affected machine. Any macOS user who has installed HP Easy Start to set up an HP printer is affected until they apply the updated version. There is no evidence of active exploitation: no public proof-of-concept exists, the flaw is not in CISA KEV, and EPSS estimates only a 0.2% probability of exploitation in the next 30 days.
    · HP Easy Start for macOS All versions prior to 2.16.7.260722mass
  • Cleartext-Transmission Privilege Escalation in HP Easy Start for macOS
    HP has disclosed an escalation-of-privilege vulnerability in HP Easy Start for macOS, versions prior to 2.16.7.260722. The flaw is mapped to CWE-319 (cleartext transmission of sensitive information), and its CVSS 4.0 network vector indicates it can be exploited remotely with low privileges required, most plausibly by an attacker in a position to intercept or tamper with network traffic used by the utility (such as update or download communications). A successful attack could allow the attacker to gain elevated privileges on the Mac running the software. Users are exposed when running any HP Easy Start for macOS release older than 2.16.7.260722, typically installed during the setup or ongoing use of an HP printer. There is currently no known public proof-of-concept, no CISA KEV listing, and no confirmed in-the-wild exploitation; HP has released version 2.16.7.260722 to remediate this issue, along with related issues CVE-2026-12554 and CVE-2026-12555.
    · HP Easy Start for macOS all versions prior to 2.16.7.260722mass
  • Privilege escalation via insecure temporary file handling in HP Easy Start for macOS
    HP has released fixes for a privilege-escalation vulnerability in HP Easy Start for macOS, the company's printer setup and driver installation utility, affecting versions prior to 2.16.7.260722. The flaw is classified as CWE-379 (creation of temporary files with insecure permissions), meaning the software creates temporary files with weak permissions that a low-privileged attacker can potentially manipulate — for example via symlink or file-replacement tricks — while the software operates. According to the CVSS 4.0 vector (AV:N/AC:L/AT:P/PR:L/UI:N), successful exploitation requires certain conditions to be met and low-level privileges but no user interaction, and yields high impact on the confidentiality, integrity, and availability of the affected component without spreading to other systems. Any macOS user who installed HP Easy Start — typically bundled with HP printers or downloaded from HP's support site during printer setup — on a version before 2.16.7.260722 is affected; this CVE is one of three related issues (CVE-2026-12554, CVE-2026-12555, CVE-2026-12556) addressed by the same update. There is no public proof of concept, the flaw is not in CISA KEV, and EPSS places exploitation probability at roughly 0.2% over the next 30 days, indicating no known exploitation activity.
    · HP Inc. HP Easy Start for macOS All versions prior to 2.16.7.260722mass

Appears with

Entities are extracted by the model from each article. Watching an entity keeps it in this browser only (no account); the watchlist page and dashboard alerts use it.