First published: Fri Sep 01 2017(Updated: )
Untrusted search path vulnerability in Installers of ART EX Driver for ApeosPort-VI C7771/C6671/C5571/C4471/C3371/C2271, DocuCentre-VI C7771/C6671/C5571/C4471/C3371/C2271 (Timestamp of code signing is before 12 Apr 2017 02:04 UTC.), PostScript? Driver + Additional Feature Plug-in + PPD File for ApeosPort-VI C7771/C6671/C5571/C4471/C3371/C2271, DocuCentre-VI C7771/C6671/C5571/C4471/C3371/C2271 (Timestamp of code signing is before 12 Apr 2017 02:10 UTC.), XPS Print Driver for ApeosPort-VI C7771/C6671/C5571/C4471/C3371/C2271, DocuCentre-VI C7771/C6671/C5571/C4471/C3371/C2271 (Timestamp of code signing is before 3 Nov 2017 23:48 UTC.), ART EX Direct FAX Driver for ApeosPort-VI C7771/C6671/C5571/C4471/C3371/C2271, DocuCentre-VI C7771/C6671/C5571/C4471/C3371/C2271 (Timestamp of code signing is before 26 May 2017 07:44 UTC.), Setting Restore Tool for ApeosPort-VI C7771/C6671/C5571/C4471/C3371/C2271, DocuCentre-VI C7771/C6671/C5571/C4471/C3371/C2271 (Timestamp of code signing is before 25 Aug 2015 08:51 UTC.) allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
Fujifilm Apeosport-vi | =c2271 | |
Fujifilm Apeosport-vi | =c3371 | |
Fujifilm Apeosport-vi | =c4471 | |
Fujifilm Apeosport-vi | =c5571 | |
Fujifilm Apeosport-vi | =c6671 | |
Fujifilm Apeosport-vi | =c7771 | |
Fujifilm Docucentre-vi | =c2271 | |
Fujifilm Docucentre-vi | =c3371 | |
Fujifilm Docucentre-vi | =c4471 | |
Fujifilm Docucentre-vi | =c5571 | |
Fujifilm Docucentre-vi | =c6671 | |
Fujifilm Docucentre-vi | =c7771 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-10850 has been classified with a high severity level due to the risk of arbitrary code execution.
To fix CVE-2017-10850, update the affected software to the latest version provided by Fujifilm.
CVE-2017-10850 affects various models of Fujifilm's ApeosPort VI and DocuCentre VI series printers.
CVE-2017-10850 is an untrusted search path vulnerability that can lead to potential exploitation.
You should be concerned about Fujifilm's ApeosPort VI models C2271, C3371, C4471, C5571, C6671, C7771 and DocuCentre VI models with the same identifiers.