CVE-2021-44738

CRITICAL

Lexmark B2236 Firmware < mslsg.076.294 - Buffer Overflow

Title source: rule
STIX 2.1

Description

Buffer overflow vulnerability has been identified in Lexmark devices through 2021-12-07 in postscript interpreter.

References (4)

Core 4
Core References
Vendor Advisory x_refsource_misc
https://support.lexmark.com/alerts/
Third Party Advisory, VDB Entry x_refsource_misc
https://www.zerodayinitiative.com/advisories/ZDI-22-327/
Third Party Advisory, VDB Entry x_refsource_misc
https://www.zerodayinitiative.com/advisories/ZDI-22-328/
Third Party Advisory, VDB Entry x_refsource_misc
https://www.zerodayinitiative.com/advisories/ZDI-22-382/

Scores

CVSS v3 9.8
EPSS 0.0965
EPSS Percentile 92.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-120
Status published
Products (50)
lexmark/6500e_firmware < lhs60.jr.p753
lexmark/b2236_firmware < mslsg.076.294
lexmark/b2338_firmware < msngm.076.294
lexmark/b2442_firmware < msngm.076.294
lexmark/b2546_firmware < msngm.076.294
lexmark/b2650_firmware < msngm.076.294
lexmark/b2865_firmware < msngw.076.294
lexmark/b3340_firmware < mslbd.076.294
lexmark/b3442_firmware < mslbd.076.294
lexmark/c2132_firmware < lw80.vy4.p210
... and 40 more
Published Jan 20, 2022
Tracked Since Feb 18, 2026