Breaking News

ASUS Unveils ProArt PA401, PA602 Wood Edition PC Cases with Retro Colors Synology Releases DiskStation Manager 7.3 Shuttle Introduces DH810 Compact Mini PC with Intel Core Ultra Processors Elgato Debuts Supersized Prompter XL for Studio Use Thermaltake Launches AW360/420 AIO Liquid Cooler and WAir CPU Cooler for Workstations

logo

  • Share Us
    • Facebook
    • Twitter
  • Home
  • Home
  • News
  • Reviews
  • Essays
  • Forum
  • Legacy
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed
    • Site Map

Search form

HP Patches Code execution Bug in Enterprise Printers

HP Patches Code execution Bug in Enterprise Printers

PC components Nov 23,2017 0

HP has released firmware patches to fix a vulnerability that could be exploited to perform remote code execution attacks on enterprise-grade printers.

HP says that the vulnerability impacts a wide range of business-ready printers, including the HP Color LaserJet Enterprise M651, HP Color LaserJet M680, HP LaserJet Enterprise Flow MFP M631, HP PageWide Enterprise Color X556, and many others.

The firmware updates can be downloaded manually from HP through the firmware search tool.

The bug was reported by FoxGlove Security, which issued an advisory disclosing the technical details about it. The researchers managed to reverse engineer ".BDL" (bundle) extension files found in HP's firmware. The next step was to
craft and upload crafted firmware files to discover where signature validation was taking place in order to bypass these protections.

Due to "insufficient solution DLL signature validation," FoxGlove was then able to use this information to create malware specifically designed to exploit the printer ranges' security weaknesses leading to remote code execution.

Tags: HP
Previous Post
Apple Applies for Patent on Foldable Display
Next Post
YouTube Takes More Steps to Tackle Down Videos Inappropriate for Minors

Related Posts

  • An Intel-HP Collaboration Delivers Next-Gen AI PCs

  • OMEN AND HYPERX POWER UP COOLEST PORTFOLIO YET FOR PERSONALIZED PLAY

  • New KIOXIA RM7 Series Value SAS SSDs Debut on Hewlett Packard Enterprise Servers

  • HYPERX EXPANDS CONSOLE GAMING HEADSET LINEUP WITH CLOUD STINGER 2 FOR PLAYSTATION AND CLOUDX STINGER 2 FOR XBOX

  • KIOXIA first to launch data center NVMe E3.S SSDs on Hewlett Packard Enterprise systems

  • HP debuted its newest HP Spectre and HP Envy laptops

  • HP Announces Omen 16 and Victus 15 new gaming laptops

  • HP Threat Research Shows Attackers Exploiting Zero‐Day Vulnerability Before Enterprises Can Patch

Latest News

ASUS Unveils ProArt PA401, PA602 Wood Edition PC Cases with Retro Colors
Cooling Systems

ASUS Unveils ProArt PA401, PA602 Wood Edition PC Cases with Retro Colors

Synology Releases DiskStation Manager 7.3
Enterprise & IT

Synology Releases DiskStation Manager 7.3

Shuttle Introduces DH810 Compact Mini PC with Intel Core Ultra Processors
Enterprise & IT

Shuttle Introduces DH810 Compact Mini PC with Intel Core Ultra Processors

Elgato Debuts Supersized Prompter XL for Studio Use
Consumer Electronics

Elgato Debuts Supersized Prompter XL for Studio Use

Thermaltake Launches AW360/420 AIO Liquid Cooler and WAir CPU Cooler for Workstations
Cooling Systems

Thermaltake Launches AW360/420 AIO Liquid Cooler and WAir CPU Cooler for Workstations

Popular Reviews

be quiet! Dark Mount Keyboard

be quiet! Dark Mount Keyboard

Terramaster F8-SSD

Terramaster F8-SSD

be quiet! Light Mount Keyboard

be quiet! Light Mount Keyboard

be quiet! Light Base 600 LX

be quiet! Light Base 600 LX

be quiet! Pure Base 501

be quiet! Pure Base 501

Soundpeats Pop Clip

Soundpeats Pop Clip

Akaso 360 Action camera

Akaso 360 Action camera

Dragon Touch Digital Calendar

Dragon Touch Digital Calendar

Main menu

  • Home
  • News
  • Reviews
  • Essays
  • Forum
  • Legacy
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed
    • Site Map
  • About
  • Privacy
  • Contact Us
  • Promotional Opportunities @ CdrInfo.com
  • Advertise on out site
  • Submit your News to our site
  • RSS Feed