Lexmark Printer Firmware vulnerabilities
4 known vulnerabilities affecting lexmark/printer_firmware.
Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH1MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2023-50739HIGHCVSS 8.8≤ 230.2092025-01-18
CVE-2023-50739 [HIGH] CWE-122 CVE-2023-50739: A buffer overflow vulnerability has been identified in the Internet Printing Protocol (IPP) in vario
A buffer overflow vulnerability has been identified in the Internet Printing Protocol (IPP) in various Lexmark devices. The vulnerability can be leveraged by an attacker to execute arbitrary code.
cvelistv5nvd
CVE-2023-50738MEDIUMCVSS 4.3≤ 230.041≥ 230.075, ≤ 230.086+2 more2025-01-17
CVE-2023-50738 [MEDIUM] CWE-354 CVE-2023-50738: A new feature to prevent Firmware downgrades was recently added to some Lexmark products. A method t
A new feature to prevent Firmware downgrades was recently added to some Lexmark products. A method to
override this downgrade protection has been identified.
cvelistv5nvd
CVE-2016-3145MEDIUMCVSS 4.6≥ pp, ≤ pp.021.062≥ cb, ≤ cb.021.062+3 more2016-04-22
CVE-2016-3145 [MEDIUM] CWE-200 CVE-2016-3145: Lexmark printers with firmware ATL before ATL.021.063, CB before CB.021.063, PP before PP.021.063, a
Lexmark printers with firmware ATL before ATL.021.063, CB before CB.021.063, PP before PP.021.063, and YK before YK.021.063 mishandle Erase Printer Memory and Erase Hard Disk actions, which allows physically proximate attackers to obtain sensitive information via direct read operations on non-volatile memory.
nvd
CVE-2016-1896CRITICALCVSS 9.8≤ cb.02.048≤ atl.02.048+2 more2016-01-27
CVE-2016-1896 [CRITICAL] CWE-254 CVE-2016-1896: Race condition in the initialization process on Lexmark printers with firmware ATL before ATL.02.049
Race condition in the initialization process on Lexmark printers with firmware ATL before ATL.02.049, CB before CB.02.049, PP before PP.02.049, and YK before YK.02.049 allows remote attackers to bypass authentication by leveraging incorrect detection of the security-jumper status.
nvd