CVE-2021-37354: Buffer Overflow
Published Feb 15, 2022
·Updated
Xerox Phaser 4622 v35.013.01.000 was discovered to contain a buffer overflow in the function sub3226AC via the TIMEZONE variable. This vulnerability allows attackers to cause a Denial of Service (DoS) via crafted overflow data.
Affected Software
2 affected components
Xerox Phaser 4622 Firmware=35.013.01.000
Xerox Phaser 4622
Event History
Feb 15, 2022
CVE Published
via MITRE·07:08 PM
Data Sourced
via MITRE·07:08 PM
Description
Frequently Asked Questions
1
What is CVE-2021-37354?
CVE-2021-37354 is a vulnerability discovered in Xerox Phaser 4622 v35.013.01.000 that allows attackers to cause a Denial of Service (DoS) via crafted overflow data.
2
How severe is CVE-2021-37354?
CVE-2021-37354 has a severity rating of 9.8 (critical).
3
What software is affected by CVE-2021-37354?
Xerox Phaser 4622 v35.013.01.000 firmware is affected by CVE-2021-37354.
4
How can the buffer overflow in CVE-2021-37354 be exploited?
The buffer overflow in CVE-2021-37354 can be exploited by attackers via the TIMEZONE variable.
5
Is Xerox Phaser 4622 vulnerable to CVE-2021-37354?
No, Xerox Phaser 4622 is not vulnerable to CVE-2021-37354. Only the v35.013.01.000 firmware version is affected.