First published: Fri Mar 10 2006(Updated: )
Multiple unspecified vulnerabilities in Xerox CopyCentre and Xerox WorkCentre Pro, running software 1.001.02.073 or earlier, or 1.001.02.074 before 1.001.02.715, allow remote attackers to cause an unspecified denial of service via a crafted PostScript file that will (1) "navigate through the directory" or (2) a "file sent to expose TCP/IP ports".
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Xerox Copycentre C65 Firmware | <=1.001.02.073 | |
Xerox Copycentre C65 Firmware | >=1.001.02.074<1.001.02.715 | |
Xerox Copycentre C65 Firmware | ||
Xerox Copycentre C75 | <=1.001.02.073 | |
Xerox Copycentre C75 | >=1.001.02.074<1.001.02.715 | |
Xerox Copycentre C75 Firmware | ||
Xerox Copycentre C90 Firmware | <=1.001.02.073 | |
Xerox Copycentre C90 Firmware | >=1.001.02.074<1.001.02.715 | |
Xerox Copycentre C90 Firmware | ||
Xerox Workcentre Pro 65 Firmware | <=1.001.02.073 | |
Xerox Workcentre Pro 65 Firmware | >=1.001.02.074<1.001.02.715 | |
Xerox Workcentre Pro 65 Firmware | ||
Xerox Workcentre Pro 75 Firmware | <=1.001.02.073 | |
Xerox Workcentre Pro 75 Firmware | >=1.001.02.074<1.001.02.715 | |
Xerox Workcentre Pro 75 Firmware | ||
Xerox Workcentre Pro 90 Firmware | <=1.001.02.073 | |
Xerox Workcentre Pro 90 Firmware | >=1.001.02.074<1.001.02.715 | |
Xerox Workcentre Pro 90 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-1137 is categorized as a denial of service vulnerability.
To fix CVE-2006-1137, upgrade to firmware version 1.001.02.715 or later.
CVE-2006-1137 affects Xerox CopyCentre C65, C75, C90 and WorkCentre Pro 65, 75, and 90 models running specific firmware versions.
Yes, CVE-2006-1137 can be exploited remotely through a crafted PostScript file.
Attackers can cause an unspecified denial of service on vulnerable Xerox devices using CVE-2006-1137.