First published: Fri Jun 30 2023(Updated: )
Certain HP LaserJet Pro print products are potentially vulnerable to a stack-based buffer overflow related to the compact font format parser.
Credit: hp-security-alert@hp.com
Affected Software | Affected Version | How to fix |
---|---|---|
HP LaserJet Pro MFP M478-M479 W1A75A | <002_2322c | |
HP LaserJet Pro MFP M478-M479 | ||
HP Color LaserJet Pro MFP M478 Firmware | <002_2322c | |
HP LaserJet Pro MFP M478-M479 W1A76A Firmware | ||
HP LaserJet Pro MFP M478-M479 W1A77A | <002_2322c | |
HP LaserJet Pro MFP M478-M479 | ||
HP Color LaserJet Pro MFP M478 | <002_2322c | |
HP LaserJet Pro MFP M478-M479 W1A78A Firmware | ||
HP LaserJet Pro MFP M478-M479 Firmware | <002_2322c | |
HP LaserJet Pro MFP M478-M479 | ||
HP LaserJet Pro MFP M478-M479 W1A80A | <002_2322c | |
HP LaserJet Pro MFP M478-M479 | ||
HP LaserJet Pro MFP M478-M479 Firmware | <002_2322c | |
HP LaserJet Pro MFP M478-M479 | ||
HP LaserJet Pro MFP M478-M479 | <002_2322c | |
HP LaserJet Pro MFP M478-M479 W1A82A Firmware | ||
HP LaserJet Pro M453-M454 | <002_2322c | |
HP LaserJet Pro M453-M454 | ||
HP LaserJet Pro M453-M454 | <002_2322c | |
HP LaserJet Pro M453-M454 | ||
HP LaserJet Pro M453-M454 Firmware | <002_2322c | |
HP LaserJet Pro M453-M454 | ||
HP LaserJet Pro M453/M454 Firmware | <002_2322c | |
HP LaserJet Pro M453/M454 Firmware | ||
HP LaserJet Pro M453-M454 Firmware | <002_2322c | |
HP LaserJet Pro M453 M454 | ||
HP LaserJet Pro M453-M454 Firmware | <002_2322c | |
HP LaserJet Pro M453-M454 Firmware | ||
HP LaserJet Pro M453/M454 Firmware | <002_2322c | |
HP LaserJet Pro M453/M454 Firmware | ||
HP LaserJet Pro M304-M305 Firmware | <002_2322c | |
HP LaserJet Pro M304-M305 | ||
HP LaserJet Pro M304 W1A48A Firmware | <002_2322c | |
HP LaserJet Pro M304-M305 W1A47A Firmware | ||
HP LaserJet Pro M304-M305 Firmware | <002_2322c | |
HP LaserJet Pro M304-M305 | ||
HP LaserJet Pro M304 W1A48A Firmware | <002_2322c | |
HP LaserJet Pro M304-M305 W1A66A Firmware | ||
HP LaserJet Pro M404/M405 Firmware | <002_2322c | |
HP LaserJet Pro M404-M405 | ||
HP LaserJet Pro m404/m405 Firmware | <002_2322c | |
HP LaserJet Pro M404-M405 | ||
HP LaserJet Pro m404/m405 Firmware | <002_2322c | |
HP LaserJet Pro M404-M405 | ||
HP LaserJet Pro M404-M405 | <002_2322c | |
HP LaserJet Pro M404-M405 | ||
HP LaserJet Pro m404-m405 | <002_2322c | |
HP LaserJet Pro M404-M405 | ||
HP LaserJet Pro m404/m405 Firmware | <002_2322c | |
HP LaserJet Pro M404-M405 | ||
HP LaserJet Pro m404/m405 Firmware | <002_2322c | |
HP LaserJet Pro M404-M405 | ||
HP LaserJet Pro M404/M405 | <002_2322c | |
HP LaserJet Pro M404-M405 | ||
HP LaserJet Pro m404-m405 | <002_2322c | |
HP LaserJet Pro M404-M405 | ||
HP LaserJet Pro m404/m405 Firmware | <002_2322c | |
HP LaserJet Pro M404-M405 | ||
HP LaserJet Pro MFP M428-M429 Firmware | <002_2322c | |
HP LaserJet Pro MFP M428-M429 | ||
HP LaserJet Pro MFP M428-M429 F W1A30A | <002_2322c | |
HP LaserJet Pro MFP M428 W1A30A Firmware | ||
HP LaserJet Pro MFP M428-M429 Firmware | <002_2322c | |
HP LaserJet Pro MFP M428-M429 Firmware | ||
HP LaserJet Pro MFP M428-M429 Firmware W1A34A | <002_2322c | |
HP LaserJet Pro MFP M428-M429 | ||
HP LaserJet Pro MFP M428-M429 | <002_2322c | |
HP LaserJet Pro MFP M428-M429 | ||
HP LaserJet Pro MFP M428-M429 Firmware | <002_2322c | |
HP LaserJet Pro MFP M428-M429 Firmware | ||
HP LaserJet Pro MFP M428-M429 Firmware | <002_2322c | |
HP LaserJet Pro MFP M428-M429 Firmware | ||
HP LaserJet Pro MFP M428-M429 Firmware | <002_2322c | |
HP LaserJet Pro MFP M428-M429 | ||
HP LaserJet Pro MFP M428-M429 Firmware | <002_2322c | |
HP LaserJet Pro MFP M428-M429 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-35177 is classified as a critical vulnerability due to the potential for a stack-based buffer overflow.
To fix CVE-2023-35177, update the firmware of your affected HP LaserJet Pro MFP M478-M479 model to a version beyond 002_2322c.
CVE-2023-35177 affects certain HP LaserJet Pro MFP M478-M479 products specifically running firmware versions prior to 002_2322c.
The risks associated with CVE-2023-35177 include unauthorized access and potential execution of arbitrary code on the affected printer.
Yes, CVE-2023-35177 can potentially be exploited remotely if the vulnerable printer is accessible over a network.