CVE-2022-23968
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 3.6
Source: NVD
Description
Xerox VersaLink devices on specific versions of firmware before 2022-01-26 allow remote attackers to brick the device via a crafted TIFF file in an unauthenticated HTTP POST request. There is a permanent denial of service because image parsing causes a reboot, but image parsing is restarted as soon as the boot process finishes. However, this boot loop can be resolved by a field technician. The TIFF file must have an incomplete Image Directory. Affected firmware versions include xx.42.01 and xx.50.61. NOTE: the 2022-01-24 NeoSmart article included "believed to affect all previous and later versions as of the date of this posting" but a 2022-01-26 vendor statement reports "the latest versions of firmware are not vulnerable to this issue."
Affected (2)
Products: Xerox: Versalink Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 42.01 |
| Running on/with | Platform Versions |
|---|---|
Xerox Versalink B400 | All versions |
Xerox Versalink B405 | All versions |
Xerox Versalink B600 | All versions |
Xerox Versalink B610 | All versions |
Xerox Versalink B7025 | All versions |
Xerox Versalink B7030 | All versions |
Xerox Versalink B7035 | All versions |
Xerox Versalink C400 | All versions |
Xerox Versalink C405 | All versions |
Xerox Versalink C500 | All versions |
Xerox Versalink C505 | All versions |
Xerox Versalink C600 | All versions |
Xerox Versalink C605 | All versions |
Xerox Versalink C7000 | All versions |
Xerox Versalink C7020 | All versions |
Xerox Versalink C7025 | All versions |
Xerox Versalink C7030 | All versions |
Xerox Versalink C8000 | All versions |
Xerox Versalink C8000w | All versions |
Xerox Versalink C9000 | All versions |
References (4)
Source: cve@mitre.org
ExploitThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Timeline
No history available yet.