CVE-2024-11346: High severity lexmark cx series vulnerability
: Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in Lexmark International CX, XC, CS, et. Al. (Postscript interpreter modules) allows Resource Injection.This issue affects CX, XC, CS, et. Al.: from 001.001:0 through 081.231, from ..P001 through ..P233, from ..P001 through ..P759, from ..P001 through ..P836.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-11346?
CVE-2024-11346 is a critical vulnerability that allows resource injection through type confusion in specific Lexmark printer models.
How do I fix CVE-2024-11346?
To fix CVE-2024-11346, you should update your Lexmark printer firmware to the latest version as recommended by Lexmark International.
Which Lexmark printer models are affected by CVE-2024-11346?
CVE-2024-11346 affects Lexmark CX, XC, and CS series printers with firmware versions from 001.001:0 to 081.231 and various P versions.
What does resource injection mean in the context of CVE-2024-11346?
Resource injection in CVE-2024-11346 refers to unauthorized access or manipulation of resources due to improper type handling in the printer's Postscript interpreter.
Is CVE-2024-11346 exploitable remotely?
Yes, CVE-2024-11346 can potentially be exploited remotely if the affected Lexmark printers are accessible over a network.