9.8
CVSSv3

CVE-2022-24292

Published: 23/03/2022 Updated: 29/03/2022
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

This vulnerability allows remote malicious users to disclose sensitive information on affected installations of HP LaserJet Pro MFP M283fdw printers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the PostScript interpreter. Crafted data in a CFF font can trigger a read past the end of an allocated data structure. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of root.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

hp laserjet_pro_m453-m454_w1y40a_firmware

hp laserjet_pro_m453-m454_w1y41a_firmware

hp laserjet_pro_m453-m454_w1y46a_firmware

hp laserjet_pro_m453-m454_w1y47a_firmware

hp laserjet_pro_m453-m454_w1y44a_firmware

hp laserjet_pro_m453-m454_w1y45a_firmware

hp laserjet_pro_m453-m454_w1y43a_firmware

hp laserjet_pro_mfp_m478-m479_w1a75a_firmware

hp laserjet_pro_mfp_m478-m479_w1a76a_firmware

hp laserjet_pro_mfp_m478-m479_w1a77a_firmware

hp laserjet_pro_mfp_m478-m479_w1a81a_firmware

hp laserjet_pro_mfp_m478-m479_w1a82a_firmware

hp laserjet_pro_mfp_m478-m479_w1a79a_firmware

hp laserjet_pro_mfp_m478-m479_w1a80a_firmware

hp laserjet_pro_mfp_m478-m479_w1a78a_firmware

hp laserjet_pro_m304-m305_w1a66a_firmware

hp laserjet_pro_m304-m305_w1a46a_firmware

hp laserjet_pro_m304-m305_w1a47a_firmware

hp laserjet_pro_m304-m305_w1a48a_firmware

hp laserjet_pro_m304-m305_w1a51a_firmware

hp laserjet_pro_m304-m305_w1a53a_firmware

hp laserjet_pro_m304-m305_w1a56a_firmware

hp laserjet_pro_m304-m305_w1a63a_firmware

hp laserjet_pro_m304-m305_w1a52a_firmware

hp laserjet_pro_m304-m305_w1a58a_firmware

hp laserjet_pro_m304-m305_w1a59a_firmware

hp laserjet_pro_m304-m305_w1a60a_firmware

hp laserjet_pro_m304-m305_w1a57a_firmware

hp laserjet_pro_m404-m405_93m22a_firmware

hp laserjet_pro_mfp_m428-m429_w1a28a_firmware

hp laserjet_pro_mfp_m428-m429_w1a31a_firmware

hp laserjet_pro_mfp_m428-m429_w1a33a_firmware

hp laserjet_pro_mfp_m428-m429_f_w1a29a_firmware

hp laserjet_pro_mfp_m428-m429_f_w1a32a_firmware

hp laserjet_pro_mfp_m428-m429_f_w1a30a_firmware

hp laserjet_pro_mfp_m428-m429_f_w1a38a_firmware

hp laserjet_pro_mfp_m428-m429_f_w1a34a_firmware

hp laserjet_pro_mfp_m428-m429_f_w1a35a_firmware

hp pagewide_352dw_j6u57a_firmware

hp pagewide_377dw_j9v80a_firmware

hp pagewide_managed_p55250dw_j6u55a_firmware

hp pagewide_managed_p55250dw_j6u51b_firmware

hp pagewide_managed_p55250dw_j6u55b_firmware

hp pagewide_managed_p57750dw_j9v82a_firmware

hp pagewide_pro_452dn_d3q15a_firmware

hp pagewide_pro_452dw_d3q16a_firmware

hp pagewide_pro_477dn_d3q19a_firmware

hp pagewide_pro_477dw_d3q20a_firmware

hp pagewide_pro_552dw_d3q17a_firmware

hp pagewide_pro_577dw_d3q21a_firmware

hp pagewide_pro_577z_k9z76a_firmware

hp officejet_pro_8210_d9l63a_firmware

hp officejet_pro_8210_d9l64a_firmware

hp officejet_pro_8210_j3p65a_firmware

hp officejet_pro_8210_j3p66a_firmware

hp officejet_pro_8210_j3p67a_firmware

hp officejet_pro_8210_j3p68a_firmware

hp officejet_pro_8216_t0g70a_firmware

hp officejet_pro_8730_d9l20a_firmware

hp officejet_pro_8730_k7s32a_firmware

hp officejet_pro_8740_d9l21a_firmware

hp officejet_pro_8740_k7s42a_firmware

hp officejet_pro_8740_t0g65a_firmware

hp officejet_pro_8740_k7s39a_firmware

hp officejet_pro_8740_j6x83a_firmware

hp officejet_pro_8740_k7s43a_firmware

hp officejet_pro_8740_k7s40a_firmware

hp officejet_pro_8740_k7s41a_firmware