ID

VAR-202201-0780


CVE

CVE-2021-44738


TITLE

plural  Lexmark  Classic buffer overflow vulnerability in device

Trust: 0.8

sources: JVNDB: JVNDB-2022-003884

DESCRIPTION

Buffer overflow vulnerability has been identified in Lexmark devices through 2021-12-07 in postscript interpreter. plural Lexmark A classic buffer overflow vulnerability exists on the device.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state. Crafted PostScript data can trigger a write past the end of an allocated buffer. This vulnerability allows local attackers to escalate privileges on affected installations of Lexmark MC3224i printers. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.The specific flaw exists within the remote object server. The issue results from the lack of an appropriate expiration mechanism for session IDs. An attacker can leverage this in conjunction with other vulnerabilities to escalate privileges and execute arbitrary code in the context of the web admin user. Lexmark is a line of printers in the United States

Trust: 4.05

sources: NVD: CVE-2021-44738 // JVNDB: JVNDB-2022-003884 // ZDI: ZDI-22-382 // ZDI: ZDI-22-328 // ZDI: ZDI-22-327 // CNVD: CNVD-2022-08178

IOT TAXONOMY

category:['IoT']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2022-08178

AFFECTED PRODUCTS

vendor:lexmarkmodel:mc3224iscope: - version: -

Trust: 2.1

vendor:lexmarkmodel:c2240scope:ltversion:cstzj.076.294

Trust: 1.0

vendor:lexmarkmodel:mx718scope:ltversion:lw80.tu.p210

Trust: 1.0

vendor:lexmarkmodel:m5155scope:ltversion:lw80.dn4.p210

Trust: 1.0

vendor:lexmarkmodel:mx810scope:ltversion:lw80.tu.p210

Trust: 1.0

vendor:lexmarkmodel:c950scope:ltversion:lhs60.tp.p753

Trust: 1.0

vendor:lexmarkmodel:xm7170scope:ltversion:lw80.tu.p210

Trust: 1.0

vendor:lexmarkmodel:ms911scope:ltversion:lw80.sa.p210

Trust: 1.0

vendor:lexmarkmodel:ms810dnscope:ltversion:lw80.dn2.p210

Trust: 1.0

vendor:lexmarkmodel:xs955scope:ltversion:lhs60.tq.p753

Trust: 1.0

vendor:lexmarkmodel:mx722scope:ltversion:mxtgw.076.294

Trust: 1.0

vendor:lexmarkmodel:mx410scope:ltversion:lw80.sb4.p210

Trust: 1.0

vendor:lexmarkmodel:ms610dnscope:ltversion:lw80.pr2.p210

Trust: 1.0

vendor:lexmarkmodel:b2650scope:ltversion:msngm.076.294

Trust: 1.0

vendor:lexmarkmodel:xc4150scope:ltversion:cxtat.076.294

Trust: 1.0

vendor:lexmarkmodel:ms812descope:ltversion:lw80.dn7.p210

Trust: 1.0

vendor:lexmarkmodel:cx622scope:ltversion:cxtzj.076.294

Trust: 1.0

vendor:lexmarkmodel:b2236scope:ltversion:mslsg.076.294

Trust: 1.0

vendor:lexmarkmodel:b3340scope:ltversion:mslbd.076.294

Trust: 1.0

vendor:lexmarkmodel:cx727scope:ltversion:cxtat.076.294

Trust: 1.0

vendor:lexmarkmodel:cs331scope:ltversion:cslbl.076.294

Trust: 1.0

vendor:lexmarkmodel:cx510scope:ltversion:lw80.gm7.p210

Trust: 1.0

vendor:lexmarkmodel:cs431scope:ltversion:cslbn.076.294

Trust: 1.0

vendor:lexmarkmodel:mb2442scope:ltversion:mxtgm.076.294

Trust: 1.0

vendor:lexmarkmodel:mb2236scope:ltversion:mxlsg.076.294

Trust: 1.0

vendor:lexmarkmodel:b2442scope:ltversion:msngm.076.294

Trust: 1.0

vendor:lexmarkmodel:b2865scope:ltversion:msngw.076.294

Trust: 1.0

vendor:lexmarkmodel:cx331scope:ltversion:cxlbl.076.294

Trust: 1.0

vendor:lexmarkmodel:cx860scope:ltversion:cxtpp.076.294

Trust: 1.0

vendor:lexmarkmodel:xc9265scope:ltversion:cxtmh.076.294

Trust: 1.0

vendor:lexmarkmodel:xm3150scope:ltversion:lw80.sb7.p210

Trust: 1.0

vendor:lexmarkmodel:m5163dnscope:ltversion:lw80.dn2.p210

Trust: 1.0

vendor:lexmarkmodel:cs720scope:ltversion:cstat.076.294

Trust: 1.0

vendor:lexmarkmodel:xc2326scope:ltversion:cxlbn.076.294

Trust: 1.0

vendor:lexmarkmodel:mx811scope:ltversion:lw80.tu.p210

Trust: 1.0

vendor:lexmarkmodel:m5255scope:ltversion:mstgw.076.294

Trust: 1.0

vendor:lexmarkmodel:mb2338scope:ltversion:mxngm.076.294

Trust: 1.0

vendor:lexmarkmodel:xc4143scope:ltversion:cxtat.076.294

Trust: 1.0

vendor:lexmarkmodel:cx417scope:ltversion:lw80.gm4.p210

Trust: 1.0

vendor:lexmarkmodel:xm3250scope:ltversion:mxtgm.076.294

Trust: 1.0

vendor:lexmarkmodel:cx421scope:ltversion:cxnzj.076.294

Trust: 1.0

vendor:lexmarkmodel:mc2325scope:ltversion:cxnzj.076.294

Trust: 1.0

vendor:lexmarkmodel:b2546scope:ltversion:msngm.076.294

Trust: 1.0

vendor:lexmarkmodel:mc2535scope:ltversion:cxtzj.076.294

Trust: 1.0

vendor:lexmarkmodel:cs923scope:ltversion:cstmh.076.294

Trust: 1.0

vendor:lexmarkmodel:c734scope:ltversion:lr.sk.p835

Trust: 1.0

vendor:lexmarkmodel:e46xscope:ltversion:lr.lbh.p835

Trust: 1.0

vendor:lexmarkmodel:mx431scope:ltversion:mxlbd.076.294

Trust: 1.0

vendor:lexmarkmodel:ms825scope:ltversion:msngw.076.294

Trust: 1.0

vendor:lexmarkmodel:cx825scope:ltversion:cxtpp.076.294

Trust: 1.0

vendor:lexmarkmodel:cx431scope:ltversion:cxlbn.076.294

Trust: 1.0

vendor:lexmarkmodel:ms517scope:ltversion:lw80.pr2.p210

Trust: 1.0

vendor:lexmarkmodel:cs410scope:ltversion:lw80.vy2.p210

Trust: 1.0

vendor:lexmarkmodel:xc2132scope:ltversion:lw80.gm7.p210

Trust: 1.0

vendor:lexmarkmodel:ms711scope:ltversion:lw80.dn2.p210

Trust: 1.0

vendor:lexmarkmodel:mx622scope:ltversion:mxtgm.076.294

Trust: 1.0

vendor:lexmarkmodel:xs950scope:ltversion:lhs60.tq.p753

Trust: 1.0

vendor:lexmarkmodel:mx717scope:ltversion:lw80.tu.p210

Trust: 1.0

vendor:lexmarkmodel:cs748scope:ltversion:lhs60.cm4.p753

Trust: 1.0

vendor:lexmarkmodel:cs820scope:ltversion:cstpp.076.294

Trust: 1.0

vendor:lexmarkmodel:cx920scope:ltversion:cxtmh.076.294

Trust: 1.0

vendor:lexmarkmodel:cs517scope:ltversion:lw80.vy4.p210

Trust: 1.0

vendor:lexmarkmodel:mc2425scope:ltversion:cxnzj.076.294

Trust: 1.0

vendor:lexmarkmodel:c3426scope:ltversion:cslbn.076.294

Trust: 1.0

vendor:lexmarkmodel:mb2650scope:ltversion:mxtgm.076.294

Trust: 1.0

vendor:lexmarkmodel:ms810descope:ltversion:lw80.dn4.p210

Trust: 1.0

vendor:lexmarkmodel:xm9155scope:ltversion:lw80.mg.p210

Trust: 1.0

vendor:lexmarkmodel:x954scope:ltversion:lhs60.tq.p753

Trust: 1.0

vendor:lexmarkmodel:xm5365scope:ltversion:mxtgw.076.294

Trust: 1.0

vendor:lexmarkmodel:cx923scope:ltversion:cxtmh.076.294

Trust: 1.0

vendor:lexmarkmodel:m3150descope:ltversion:lw80.pr4.p210

Trust: 1.0

vendor:lexmarkmodel:c792scope:ltversion:lhs60.hc.p753

Trust: 1.0

vendor:lexmarkmodel:m1140scope:ltversion:lw80.prl.p210

Trust: 1.0

vendor:lexmarkmodel:mx421scope:ltversion:mxtgm.076.294

Trust: 1.0

vendor:lexmarkmodel:c2325scope:ltversion:csnzj.076.294

Trust: 1.0

vendor:lexmarkmodel:xm5170scope:ltversion:lw80.tu.p210

Trust: 1.0

vendor:lexmarkmodel:mx6500escope:ltversion:lw80.jd.p210

Trust: 1.0

vendor:lexmarkmodel:xm1140scope:ltversion:lw80.sb4.p210

Trust: 1.0

vendor:lexmarkmodel:m1140\+scope:ltversion:lw80.pr2.p210

Trust: 1.0

vendor:lexmarkmodel:mx822scope:ltversion:mxtgw.076.294

Trust: 1.0

vendor:lexmarkmodel:ms823scope:ltversion:msngw.076.294

Trust: 1.0

vendor:lexmarkmodel:xc2130scope:ltversion:lw80.gm4.p210

Trust: 1.0

vendor:lexmarkmodel:ms431scope:ltversion:mslbd.076.294

Trust: 1.0

vendor:lexmarkmodel:m1342scope:ltversion:mslbd.076.294

Trust: 1.0

vendor:lexmarkmodel:cx317scope:ltversion:lw80.gm2.p210

Trust: 1.0

vendor:lexmarkmodel:x746scope:ltversion:lhs60.ny.p753

Trust: 1.0

vendor:lexmarkmodel:c746scope:ltversion:lhs60.cm2.p753

Trust: 1.0

vendor:lexmarkmodel:mb2770scope:ltversion:mxtgw.076.294

Trust: 1.0

vendor:lexmarkmodel:xm1242scope:ltversion:mxtgm.076.294

Trust: 1.0

vendor:lexmarkmodel:m1246scope:ltversion:msngm.076.294

Trust: 1.0

vendor:lexmarkmodel:ms410scope:ltversion:lw80.prl.p210

Trust: 1.0

vendor:lexmarkmodel:mx521scope:ltversion:mxtgm.076.294

Trust: 1.0

vendor:lexmarkmodel:ms315scope:ltversion:lw80.tl2.p210

Trust: 1.0

vendor:lexmarkmodel:m3150dnscope:ltversion:lw80.pr2.p210

Trust: 1.0

vendor:lexmarkmodel:ms811scope:ltversion:lw80.dn2.p210

Trust: 1.0

vendor:lexmarkmodel:xm9145scope:ltversion:lw80.mg.p210

Trust: 1.0

vendor:lexmarkmodel:xm1246scope:ltversion:mxtgm.076.294

Trust: 1.0

vendor:lexmarkmodel:xm7370scope:ltversion:mxtgw.076.294

Trust: 1.0

vendor:lexmarkmodel:cx725scope:ltversion:cxtat.076.294

Trust: 1.0

vendor:lexmarkmodel:cs417scope:ltversion:lw80.vy2.p210

Trust: 1.0

vendor:lexmarkmodel:x952scope:ltversion:lhs60.tq.p753

Trust: 1.0

vendor:lexmarkmodel:xc2235scope:ltversion:cxtzj.076.294

Trust: 1.0

vendor:lexmarkmodel:xm5263scope:ltversion:lw80.tu.p210

Trust: 1.0

vendor:lexmarkmodel:xm9165scope:ltversion:lw80.mg.p210

Trust: 1.0

vendor:lexmarkmodel:ms610descope:ltversion:lw80.pr4.p210

Trust: 1.0

vendor:lexmarkmodel:xs795scope:ltversion:lhs60.mr.p753

Trust: 1.0

vendor:lexmarkmodel:6500escope:ltversion:lhs60.jr.p753

Trust: 1.0

vendor:lexmarkmodel:mx317scope:ltversion:lw80.sb2.p210

Trust: 1.0

vendor:lexmarkmodel:cx522scope:ltversion:cxtzj.076.294

Trust: 1.0

vendor:lexmarkmodel:mx911scope:ltversion:lw80.mg.p210

Trust: 1.0

vendor:lexmarkmodel:cx625scope:ltversion:cxtzj.076.294

Trust: 1.0

vendor:lexmarkmodel:mx611scope:ltversion:lw80.sb7.p210

Trust: 1.0

vendor:lexmarkmodel:xm7355scope:ltversion:mxtgw.076.294

Trust: 1.0

vendor:lexmarkmodel:cs310scope:ltversion:lw80.vyl.p210

Trust: 1.0

vendor:lexmarkmodel:xm7270scope:ltversion:lw80.tu.p210

Trust: 1.0

vendor:lexmarkmodel:mx610scope:ltversion:lw80.sb7.p210

Trust: 1.0

vendor:lexmarkmodel:xs925scope:ltversion:lhs60.hk.p753

Trust: 1.0

vendor:lexmarkmodel:c9235scope:ltversion:cstmh.076.294

Trust: 1.0

vendor:lexmarkmodel:c6160scope:ltversion:cstpp.076.294

Trust: 1.0

vendor:lexmarkmodel:cx820scope:ltversion:cxtpp.076.294

Trust: 1.0

vendor:lexmarkmodel:ms417scope:ltversion:lw80.tl2.p210

Trust: 1.0

vendor:lexmarkmodel:m5270scope:ltversion:mstgw.076.294

Trust: 1.0

vendor:lexmarkmodel:mx710scope:ltversion:lw80.tu.p210

Trust: 1.0

vendor:lexmarkmodel:c2132scope:ltversion:lw80.vy4.p210

Trust: 1.0

vendor:lexmarkmodel:ms317scope:ltversion:lw80.prl.p210

Trust: 1.0

vendor:lexmarkmodel:mx310scope:ltversion:lw80.sb2.p210

Trust: 1.0

vendor:lexmarkmodel:ms521scope:ltversion:msngm.076.294

Trust: 1.0

vendor:lexmarkmodel:xc6153scope:ltversion:cxtpp.076.294

Trust: 1.0

vendor:lexmarkmodel:m5170scope:ltversion:lw80.dn7.p210

Trust: 1.0

vendor:lexmarkmodel:ms817scope:ltversion:lw80.dn2.p210

Trust: 1.0

vendor:lexmarkmodel:xs796scope:ltversion:lhs60.mr.p753

Trust: 1.0

vendor:lexmarkmodel:xc9225scope:ltversion:cxtmh.076.294

Trust: 1.0

vendor:lexmarkmodel:c4150scope:ltversion:cstat.076.294

Trust: 1.0

vendor:lexmarkmodel:cs622scope:ltversion:cstzj.076.294

Trust: 1.0

vendor:lexmarkmodel:c3326scope:ltversion:cslbl.076.294

Trust: 1.0

vendor:lexmarkmodel:xm1342scope:ltversion:mslbd.076.294

Trust: 1.0

vendor:lexmarkmodel:xc9245scope:ltversion:cxtmh.076.294

Trust: 1.0

vendor:lexmarkmodel:xs548scope:ltversion:lhs60.vk.p753

Trust: 1.0

vendor:lexmarkmodel:c748scope:ltversion:lhs60.cm4.p753

Trust: 1.0

vendor:lexmarkmodel:xs798scope:ltversion:lhs60.mr.p753

Trust: 1.0

vendor:lexmarkmodel:m1242scope:ltversion:msngm.076.294

Trust: 1.0

vendor:lexmarkmodel:m5163descope:ltversion:lw80.dn4.p210

Trust: 1.0

vendor:lexmarkmodel:w850scope:ltversion:lp.jb.p834

Trust: 1.0

vendor:lexmarkmodel:cs727scope:ltversion:cstat.076.294

Trust: 1.0

vendor:lexmarkmodel:c925scope:ltversion:lhs60.hv.p753

Trust: 1.0

vendor:lexmarkmodel:xc8160scope:ltversion:cxtpp.076.294

Trust: 1.0

vendor:lexmarkmodel:x748scope:ltversion:lhs60.ny.p753

Trust: 1.0

vendor:lexmarkmodel:mb2546scope:ltversion:mxtgm.076.294

Trust: 1.0

vendor:lexmarkmodel:ms621scope:ltversion:msngm.076.294

Trust: 1.0

vendor:lexmarkmodel:cx924scope:ltversion:cxtmh.076.294

Trust: 1.0

vendor:lexmarkmodel:xc8163scope:ltversion:cxtpp.076.294

Trust: 1.0

vendor:lexmarkmodel:ms818scope:ltversion:lw80.dn2.p210

Trust: 1.0

vendor:lexmarkmodel:b2338scope:ltversion:msngm.076.294

Trust: 1.0

vendor:lexmarkmodel:mx910scope:ltversion:lw80.mg.p210

Trust: 1.0

vendor:lexmarkmodel:cx410scope:ltversion:lw80.gm4.p210

Trust: 1.0

vendor:lexmarkmodel:xc4140scope:ltversion:cxtat.076.294

Trust: 1.0

vendor:lexmarkmodel:x65xscope:ltversion:lr.mn.p835

Trust: 1.0

vendor:lexmarkmodel:mc3426scope:ltversion:cxlbn.076.294

Trust: 1.0

vendor:lexmarkmodel:cs725scope:ltversion:cstat.076.294

Trust: 1.0

vendor:lexmarkmodel:cs317scope:ltversion:lw80.vyl.p210

Trust: 1.0

vendor:lexmarkmodel:cx310scope:ltversion:lw80.gm2.p210

Trust: 1.0

vendor:lexmarkmodel:ms710scope:ltversion:lw80.dn2.p210

Trust: 1.0

vendor:lexmarkmodel:ms321scope:ltversion:msngm.076.294

Trust: 1.0

vendor:lexmarkmodel:cs796scope:ltversion:lhs60.hc.p753

Trust: 1.0

vendor:lexmarkmodel:ms826scope:ltversion:mstgw.076.294

Trust: 1.0

vendor:lexmarkmodel:xc6152scope:ltversion:cxtpp.076.294

Trust: 1.0

vendor:lexmarkmodel:ms510scope:ltversion:lw80.pr2.p210

Trust: 1.0

vendor:lexmarkmodel:m3250scope:ltversion:mstgm.076.294

Trust: 1.0

vendor:lexmarkmodel:cs728scope:ltversion:cstat.076.294

Trust: 1.0

vendor:lexmarkmodel:mx517scope:ltversion:lw80.sb4.p210

Trust: 1.0

vendor:lexmarkmodel:m1145scope:ltversion:lw80.pr2.p210

Trust: 1.0

vendor:lexmarkmodel:cs439scope:ltversion:cslbn.076.294

Trust: 1.0

vendor:lexmarkmodel:mc3224scope:ltversion:cxlbl.076.294

Trust: 1.0

vendor:lexmarkmodel:mx511scope:ltversion:lw80.sb4.p210

Trust: 1.0

vendor:lexmarkmodel:cs827scope:ltversion:cstpp.076.294

Trust: 1.0

vendor:lexmarkmodel:ms822scope:ltversion:mstgw.076.294

Trust: 1.0

vendor:lexmarkmodel:cx922scope:ltversion:cxtmh.076.294

Trust: 1.0

vendor:lexmarkmodel:xc9235scope:ltversion:cxtmh.076.294

Trust: 1.0

vendor:lexmarkmodel:c2535scope:ltversion:csnzj.076.294

Trust: 1.0

vendor:lexmarkmodel:x73xscope:ltversion:lr.fl.p835

Trust: 1.0

vendor:lexmarkmodel:c736scope:ltversion:lr.ske.p835

Trust: 1.0

vendor:lexmarkmodel:ms421scope:ltversion:msngm.076.294

Trust: 1.0

vendor:lexmarkmodel:xm7155scope:ltversion:lw80.tu.p210

Trust: 1.0

vendor:lexmarkmodel:x950scope:ltversion:lhs60.tq.p753

Trust: 1.0

vendor:lexmarkmodel:ms725scope:ltversion:msngw.076.294

Trust: 1.0

vendor:lexmarkmodel:cs827scope:ltversion:cxtpp.076.294

Trust: 1.0

vendor:lexmarkmodel:cs521scope:ltversion:csnzj.076.294

Trust: 1.0

vendor:lexmarkmodel:xc9255scope:ltversion:cxtmh.076.294

Trust: 1.0

vendor:lexmarkmodel:mx617scope:ltversion:lw80.sb7.p210

Trust: 1.0

vendor:lexmarkmodel:ms812dnscope:ltversion:lw80.dn2.p210

Trust: 1.0

vendor:lexmarkmodel:ms821scope:ltversion:msngw.076.294

Trust: 1.0

vendor:lexmarkmodel:mx522scope:ltversion:mxtgm.076.294

Trust: 1.0

vendor:lexmarkmodel:cs927scope:ltversion:cstmh.076.294

Trust: 1.0

vendor:lexmarkmodel:mx711scope:ltversion:lw80.tu.p210

Trust: 1.0

vendor:lexmarkmodel:x46xscope:ltversion:lr.bs.p835

Trust: 1.0

vendor:lexmarkmodel:ms331scope:ltversion:mslbd.076.294

Trust: 1.0

vendor:lexmarkmodel:xc8155scope:ltversion:cxtpp.076.294

Trust: 1.0

vendor:lexmarkmodel:cs921scope:ltversion:cstmh.076.294

Trust: 1.0

vendor:lexmarkmodel:mx812scope:ltversion:lw80.tu.p210

Trust: 1.0

vendor:lexmarkmodel:ms622scope:ltversion:mstgm.076.294

Trust: 1.0

vendor:lexmarkmodel:xc4153scope:ltversion:cxtat.076.294

Trust: 1.0

vendor:lexmarkmodel:mx510scope:ltversion:lw80.sb4.p210

Trust: 1.0

vendor:lexmarkmodel:xm7263scope:ltversion:lw80.tu.p210

Trust: 1.0

vendor:lexmarkmodel:cx921scope:ltversion:cxtmh.076.294

Trust: 1.0

vendor:lexmarkmodel:cs510scope:ltversion:lw80.vy4.p210

Trust: 1.0

vendor:lexmarkmodel:xm5270scope:ltversion:lw80.tu.p210

Trust: 1.0

vendor:lexmarkmodel:xm5163scope:ltversion:lw80.tu.p210

Trust: 1.0

vendor:lexmarkmodel:mc3326scope:ltversion:cxlbl.076.294

Trust: 1.0

vendor:lexmarkmodel:xm1135scope:ltversion:lw80.sb2.p210

Trust: 1.0

vendor:lexmarkmodel:mx331scope:ltversion:mxlbd.076.294

Trust: 1.0

vendor:lexmarkmodel:ms312scope:ltversion:lw80.prl.p210

Trust: 1.0

vendor:lexmarkmodel:mx417scope:ltversion:lw80.sb4.p210

Trust: 1.0

vendor:lexmarkmodel:mx321scope:ltversion:mxngm.076.294

Trust: 1.0

vendor:lexmarkmodel:x792scope:ltversion:lhs60.mr.p753

Trust: 1.0

vendor:lexmarkmodel:x86xscope:ltversion:lp.sp.p834

Trust: 1.0

vendor:lexmarkmodel:cx517scope:ltversion:lw80.gm7.p210

Trust: 1.0

vendor:lexmarkmodel:ms310scope:ltversion:lw80.prl.p210

Trust: 1.0

vendor:lexmarkmodel:c3224scope:ltversion:cslbl.076.294

Trust: 1.0

vendor:lexmarkmodel:xs748scope:ltversion:lhs60.ny.p753

Trust: 1.0

vendor:lexmarkmodel:mx912scope:ltversion:lw80.mg.p210

Trust: 1.0

vendor:lexmarkmodel:ms617scope:ltversion:lw80.pr2.p210

Trust: 1.0

vendor:lexmarkmodel:x548scope:ltversion:lhs60.vk.p753

Trust: 1.0

vendor:lexmarkmodel:mb3442scope:ltversion:mxlbd.076.294

Trust: 1.0

vendor:lexmarkmodel:mx721scope:ltversion:mxtgw.076.294

Trust: 1.0

vendor:lexmarkmodel:x925scope:ltversion:lhs60.hk.p753

Trust: 1.0

vendor:lexmarkmodel:xm1145scope:ltversion:lw80.sb4.p210

Trust: 1.0

vendor:lexmarkmodel:c2326scope:ltversion:cslbn.076.294

Trust: 1.0

vendor:lexmarkmodel:t65xscope:ltversion:lr.jp.p835

Trust: 1.0

vendor:lexmarkmodel:mc2640scope:ltversion:cxtzj.076.294

Trust: 1.0

vendor:lexmarkmodel:ms415scope:ltversion:lw80.tl2.p210

Trust: 1.0

vendor:lexmarkmodel:b3442scope:ltversion:mslbd.076.294

Trust: 1.0

vendor:lexmarkmodel:xc4240scope:ltversion:cxtzj.076.294

Trust: 1.0

vendor:lexmarkmodel:mx826scope:ltversion:mxtgw.076.294

Trust: 1.0

vendor:lexmarkmodel:cs421scope:ltversion:csnzj.076.294

Trust: 1.0

vendor:lexmarkmodel:xm7163scope:ltversion:lw80.tu.p210

Trust: 1.0

vendor:lexmarkmodel:c2425scope:ltversion:csnzj.076.294

Trust: 1.0

vendor:lexmarkmodel:b2236scope: - version: -

Trust: 0.8

vendor:lexmarkmodel:mx431scope: - version: -

Trust: 0.8

vendor:lexmarkmodel:mb2236scope: - version: -

Trust: 0.8

vendor:lexmarkmodel:xm1342scope: - version: -

Trust: 0.8

vendor:lexmarkmodel:mx331scope: - version: -

Trust: 0.8

vendor:lexmarkmodel:ms331scope: - version: -

Trust: 0.8

vendor:lexmarkmodel:ms431scope: - version: -

Trust: 0.8

vendor:lexmarkmodel:b3340scope: - version: -

Trust: 0.8

vendor:lexmarkmodel:b3442scope: - version: -

Trust: 0.8

vendor:lexmarkmodel:m1342scope: - version: -

Trust: 0.8

vendor:lexmarkmodel:lexmarkscope: - version: -

Trust: 0.6

sources: ZDI: ZDI-22-382 // ZDI: ZDI-22-328 // ZDI: ZDI-22-327 // CNVD: CNVD-2022-08178 // JVNDB: JVNDB-2022-003884 // NVD: CVE-2021-44738

CVSS

SEVERITY

CVSSV2

CVSSV3

ZDI: CVE-2021-44738
value: HIGH

Trust: 2.1

nvd@nist.gov: CVE-2021-44738
value: CRITICAL

Trust: 1.0

NVD: CVE-2021-44738
value: CRITICAL

Trust: 0.8

CNVD: CNVD-2022-08178
value: HIGH

Trust: 0.6

CNNVD: CNNVD-202201-1804
value: CRITICAL

Trust: 0.6

nvd@nist.gov: CVE-2021-44738
severity: HIGH
baseScore: 10.0
vectorString: AV:N/AC:L/AU:N/C:C/I:C/A:C
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 10.0
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.8

CNVD: CNVD-2022-08178
severity: HIGH
baseScore: 10.0
vectorString: AV:N/AC:L/AU:N/C:C/I:C/A:C
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 10.0
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

ZDI: CVE-2021-44738
baseSeverity: HIGH
baseScore: 8.8
vectorString: AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
attackVector: ADJACENT
attackComplexity: LOW
privilegesRequired: NONE
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: 2.8
impactScore: 5.9
version: 3.0

Trust: 1.4

nvd@nist.gov: CVE-2021-44738
baseSeverity: CRITICAL
baseScore: 9.8
vectorString: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
attackVector: NETWORK
attackComplexity: LOW
privilegesRequired: NONE
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: 3.9
impactScore: 5.9
version: 3.1

Trust: 1.0

NVD: CVE-2021-44738
baseSeverity: CRITICAL
baseScore: 9.8
vectorString: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
attackVector: NETWORK
attackComplexity: LOW
privilegesRequired: NONE
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: NONE
impactScore: NONE
version: 3.0

Trust: 0.8

ZDI: CVE-2021-44738
baseSeverity: HIGH
baseScore: 7.1
vectorString: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
attackVector: LOCAL
attackComplexity: LOW
privilegesRequired: LOW
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: NONE
exploitabilityScore: 1.8
impactScore: 5.2
version: 3.0

Trust: 0.7

sources: ZDI: ZDI-22-382 // ZDI: ZDI-22-328 // ZDI: ZDI-22-327 // CNVD: CNVD-2022-08178 // JVNDB: JVNDB-2022-003884 // CNNVD: CNNVD-202201-1804 // NVD: CVE-2021-44738

PROBLEMTYPE DATA

problemtype:CWE-120

Trust: 1.0

problemtype:Classic buffer overflow (CWE-120) [NVD evaluation ]

Trust: 0.8

sources: JVNDB: JVNDB-2022-003884 // NVD: CVE-2021-44738

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-202201-1804

TYPE

other

Trust: 0.6

sources: CNNVD: CNNVD-202201-1804

PATCH

title:Lexmark has issued an update to correct this vulnerability.url:https://publications.lexmark.com/publications/security-alerts/CVE-2021-44738.pdf

Trust: 2.1

title:Lexmark Security Advisoriesurl:https://www.lexmark.com/en_us/solutions/security/lexmark-security-advisories.html

Trust: 0.8

title:Patch for Lexmark Buffer Overflow Vulnerabilityurl:https://www.cnvd.org.cn/patchInfo/show/317096

Trust: 0.6

title:Lexmark Security vulnerabilitiesurl:http://www.cnnvd.org.cn/web/xxk/bdxqById.tag?id=179571

Trust: 0.6

sources: ZDI: ZDI-22-382 // ZDI: ZDI-22-328 // ZDI: ZDI-22-327 // CNVD: CNVD-2022-08178 // JVNDB: JVNDB-2022-003884 // CNNVD: CNNVD-202201-1804

EXTERNAL IDS

db:NVDid:CVE-2021-44738

Trust: 5.9

db:ZDIid:ZDI-22-382

Trust: 3.1

db:ZDIid:ZDI-22-328

Trust: 3.1

db:ZDIid:ZDI-22-327

Trust: 3.1

db:JVNDBid:JVNDB-2022-003884

Trust: 0.8

db:ZDI_CANid:ZDI-CAN-15982

Trust: 0.7

db:ZDI_CANid:ZDI-CAN-15924

Trust: 0.7

db:ZDI_CANid:ZDI-CAN-15925

Trust: 0.7

db:CNVDid:CNVD-2022-08178

Trust: 0.6

db:CNNVDid:CNNVD-202201-1804

Trust: 0.6

sources: ZDI: ZDI-22-382 // ZDI: ZDI-22-328 // ZDI: ZDI-22-327 // CNVD: CNVD-2022-08178 // JVNDB: JVNDB-2022-003884 // CNNVD: CNNVD-202201-1804 // NVD: CVE-2021-44738

REFERENCES

url:https://www.zerodayinitiative.com/advisories/zdi-22-327/

Trust: 3.0

url:https://www.zerodayinitiative.com/advisories/zdi-22-382/

Trust: 3.0

url:https://www.zerodayinitiative.com/advisories/zdi-22-328/

Trust: 2.4

url:https://publications.lexmark.com/publications/security-alerts/cve-2021-44738.pdf

Trust: 2.1

url:https://nvd.nist.gov/vuln/detail/cve-2021-44738

Trust: 2.0

url:https://support.lexmark.com/alerts/

Trust: 1.6

sources: ZDI: ZDI-22-382 // ZDI: ZDI-22-328 // ZDI: ZDI-22-327 // CNVD: CNVD-2022-08178 // JVNDB: JVNDB-2022-003884 // CNNVD: CNNVD-202201-1804 // NVD: CVE-2021-44738

CREDITS

Christopher Anastasio @mufinnnnnnn

Trust: 1.4

sources: ZDI: ZDI-22-328 // ZDI: ZDI-22-327

SOURCES

db:ZDIid:ZDI-22-382
db:ZDIid:ZDI-22-328
db:ZDIid:ZDI-22-327
db:CNVDid:CNVD-2022-08178
db:JVNDBid:JVNDB-2022-003884
db:CNNVDid:CNNVD-202201-1804
db:NVDid:CVE-2021-44738

LAST UPDATE DATE

2024-11-23T22:44:06.372000+00:00


SOURCES UPDATE DATE

db:ZDIid:ZDI-22-382date:2022-02-18T00:00:00
db:ZDIid:ZDI-22-328date:2022-02-15T00:00:00
db:ZDIid:ZDI-22-327date:2022-02-15T00:00:00
db:CNVDid:CNVD-2022-08178date:2022-02-02T00:00:00
db:JVNDBid:JVNDB-2022-003884date:2023-03-10T03:23:00
db:CNNVDid:CNNVD-202201-1804date:2022-03-10T00:00:00
db:NVDid:CVE-2021-44738date:2024-11-21T06:31:29.940

SOURCES RELEASE DATE

db:ZDIid:ZDI-22-382date:2022-02-18T00:00:00
db:ZDIid:ZDI-22-328date:2022-02-15T00:00:00
db:ZDIid:ZDI-22-327date:2022-02-15T00:00:00
db:CNVDid:CNVD-2022-08178date:2022-02-02T00:00:00
db:JVNDBid:JVNDB-2022-003884date:2023-03-10T00:00:00
db:CNNVDid:CNNVD-202201-1804date:2022-01-20T00:00:00
db:NVDid:CVE-2021-44738date:2022-01-20T16:15:07.507