CVE-2023-35177
8.8
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD
Description
Certain HP LaserJet Pro print products are potentially vulnerable to a stack-based buffer overflow related to the compact font format parser.
Affected (38)
Products: Hp: Laserjet Pro Mfp M478 M479 W1a75a Firmware, Laserjet Pro Mfp M478 M479 W1a76a Firmware, Laserjet Pro Mfp M478 M479 W1a77a Firmware, Laserjet Pro Mfp M478 M479 W1a78a Firmware, Laserjet Pro Mfp M478 M479 W1a79a Firmware, Laserjet Pro Mfp M478 M479 W1a80a Firmware, Laserjet Pro Mfp M478 M479 W1a81a Firmware, Laserjet Pro Mfp M478 M479 W1a82a Firmware, Laserjet Pro M453 M454 W1y40a Firmware, Laserjet Pro M453 M454 W1y41a Firmware, Laserjet Pro M453 M454 W1y43a Firmware, Laserjet Pro M453 M454 W1y44a Firmware, Laserjet Pro M453 M454 W1y45a Firmware, Laserjet Pro M453 M454 W1y46a Firmware, Laserjet Pro M453 M454 W1y47a Firmware, Laserjet Pro M304 M305 W1a46a Firmware, Laserjet Pro M304 M305 W1a47a Firmware, Laserjet Pro M304 M305 W1a48a Firmware, Laserjet Pro M304 M305 W1a66a Firmware, Laserjet Pro M404 M405 93m22a Firmware, Laserjet Pro M404 M405 W1a51a Firmware, Laserjet Pro M404 M405 W1a52a Firmware, Laserjet Pro M404 M405 W1a53a Firmware, Laserjet Pro M404 M405 W1a56a Firmware, Laserjet Pro M404 M405 W1a57a Firmware, Laserjet Pro M404 M405 W1a58a Firmware, Laserjet Pro M404 M405 W1a59a Firmware, Laserjet Pro M404 M405 W1a60a Firmware, Laserjet Pro M404 M405 W1a63a Firmware, Laserjet Pro Mfp M428 M429 F W1a29a Firmware, Laserjet Pro Mfp M428 M429 F W1a30a Firmware, Laserjet Pro Mfp M428 M429 F W1a32a Firmware, Laserjet Pro Mfp M428 M429 F W1a34a Firmware, Laserjet Pro Mfp M428 M429 F W1a35a Firmware, Laserjet Pro Mfp M428 M429 F W1a38a Firmware, Laserjet Pro Mfp M428 M429 W1a28a Firmware, Laserjet Pro Mfp M428 M429 W1a31a Firmware, Laserjet Pro Mfp M428 M429 W1a33a Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro Mfp M478 M479 W1a75a | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro Mfp M478 M479 W1a76a | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro Mfp M478 M479 W1a77a | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro Mfp M478 M479 W1a78a | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro Mfp M478 M479 W1a79a | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro Mfp M478 M479 W1a80a | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro Mfp M478 M479 W1a81a | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro Mfp M478 M479 W1a82a | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro M453 M454 W1y40a | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro M453 M454 W1y41a | All versions |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro M453 M454 W1y43a | All versions |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro M453 M454 W1y44a | All versions |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro M453 M454 W1y45a | All versions |
Configuration N
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro M453 M454 W1y46a | All versions |
Configuration O
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro M453 M454 W1y47a | All versions |
Configuration P
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro M304 M305 W1a46a | All versions |
Configuration Q
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro M304 M305 W1a47a | All versions |
Configuration R
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro M304 M305 W1a48a | All versions |
Configuration S
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro M304 M305 W1a66a | All versions |
Configuration T
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro M404 M405 93m22a | All versions |
Configuration U
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro M404 M405 W1a51a | All versions |
Configuration V
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro M404 M405 W1a52a | All versions |
Configuration W
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro M404 M405 W1a53a | All versions |
Configuration X
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro M404 M405 W1a56a | All versions |
Configuration Y
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro M404 M405 W1a57a | All versions |
Configuration Z
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro M404 M405 W1a58a | All versions |
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro M404 M405 W1a59a | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro M404 M405 W1a60a | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro M404 M405 W1a63a | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro Mfp M428 M429 F W1a29a | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro Mfp M428 M429 F W1a30a | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro Mfp M428 M429 F W1a32a | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro Mfp M428 M429 F W1a34a | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro Mfp M428 M429 F W1a35a | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro Mfp M428 M429 F W1a38a | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro Mfp M428 M429 W1a28a | All versions |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro Mfp M428 M429 W1a31a | All versions |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| Before 002_2322c |
| Running on/with | Platform Versions |
|---|---|
Hp Laserjet Pro Mfp M428 M429 W1a33a | All versions |
References (2)
Source: hp-security-alert@hp.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.