Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2023-23560

In certain Lexmark products through 2023-01-12, SSRF can occur because of a lack of input validation.

CVE
#ssrf#pdf

%PDF-1.7 %���� 528 0 obj <> endobj 542 0 obj <>/Filter/FlateDecode/ID[<39DCC2A24C0DE24D9B6C18325A97C7E1><78F235B8D01948A0B7B9A1427E9CE91B>]/Index[528 37]/Info 527 0 R/Length 77/Prev 94092/Root 529 0 R/Size 565/Type/XRef/W[1 2 1]>>stream h�bbd``b`�$����@��H0� � �>�5H��R�AJ&�Xˀ�u &F��@#����/�0#l 0 endstream endobj startxref 0 %%EOF 564 0 obj <>stream h�b```�J!Aʰ!��oI�~ wE60506@�H����ژ��1~c�˴�i�’�ă�`�� �.1@���A�����1�H;�0��N endstream endobj 529 0 obj <>/Metadata 11 0 R/Pages 526 0 R/StructTreeRoot 15 0 R/Type/Catalog/ViewerPreferences 543 0 R>> endobj 530 0 obj <>/MediaBox[0 0 612 792]/Parent 526 0 R/Resources<>/Font<>/ProcSet[/PDF/Text/ImageB/ImageC/ImageI]>>/Rotate 0/StructParents 0/Tabs/S/Type/Page>> endobj 531 0 obj <>stream h�ėݎ�:�_ŗ��_�$R��.�E�n��s�R��\6RHP����w��!��Т������{>��Iˆ�<"TPB�4 %T>� �(�A�C� PS�p��S ¥M% W � (�C��&^���IXH�f�A��`�Ҍ��� p")%��`v)���:N�M�l��b�֙!u�� ��qsG�r�dt�����~7����EB�����5�1�&�I�}_=����x~Ho��{���j⋀�M�6��I��*��N����)�����#�1�#b�y�� �i� n�ly7�ow�2F�u���Q��m1��$�4_���]���"`j:���0��΁��.J�yg�Pl8�����R�ھG�4����_�h~q\�§��i#X�y��L[{�c�J�M*�����|Q����4�Uڶ’iYշOI�ܵ?7K=#�C�S�S� ��o_j<�9�f�=yj�R��û!�@�x"�.D�DJ[���00 Ft ��kSݛ�:�?��$y’I�D�$�9��%$)�ǂN+؏2��Q�_R��*���!IX���<�X�@�� v2���8s=!�8’r�A�ҭq���N�����ݹ���{���?6<��X���~X�?�j��]È���V��Q �8j���^�t�_�� �:’��ZڀNGY?�ط���F`k��u]T�+��J^��<���d� l2�2<�Lt^Fj��Ѥ�C��]Ru�����m��vӿ�l�v��Y2]�(��,���},�ڐ�b�m���S�b�wt���c�4%��j���z��>�UZ����hY|1�a��&3k�����=I3���v��2���K ��� �ǜG�s]��c)#�߱�ѕ�;V2� �:�.H۱D��m�v(1�V|&��Ndzm^��_ ���~�����t|�l�#�� �\��mh2�Ƣ:Xt�_L��?�@:cZC�2(A���W�P{G�e���[?W�_���!JzvLk�p�S���( endstream endobj 532 0 obj <>stream H���KO�@����hW�/��B��PH���Pz��, ;I��w֤ao�9��Y�73;�]�:�����ޗ}�;;��߃�0���_.$p0x������`{a�u(@dpq’q� Xi��;�pԷ0��c0n޲��Q��N��XEw��o�/�$�����>��Xe��h’**��ʍ}���q �k��i����_��V1-^{�������%�o��s&��`5��t�� ����L��?����e]Ɖ��’odmh&X������_�’xƸ�9JF�z E0�G�8i��7���� ���’�8��)�~�\� 0w�UΠ��h�:S6LYdJ7EPQR����Q����"�)��*�ըN>��e5v’"Vn��|��| Er��@R*��)�P&c�m��ܶbvu[��W^��m1�MTn���Uؕd��"*Y*m���B-X��`#�M�Ln8~� �ď�Wr�U���Q�YnZE�2&t�ޟݹ-?�\�.�k�.W���9l)$Gr,��]���s��NUvj�g��b:���El��i��@’3�:fH�륎�#2�皩 �����x�g3w�]�a���7����������?ġ���I�Nx��^��q"06S7��x�+�S����Dz�:#j('TP� ��8��c@�������#�O&�CN <�=�� ќ������8�M�k2�H3��22�a6_-�-y�h�Y�s����#�b����q��ZS��XY�2��a��g���!�ǐ�Mk�=���A��� �R�^z��^��[���n��+�9��v@T!��8Tg �_�:C�&V� C{)�:�0�\XN endstream endobj 533 0 obj <>stream H����N�@��-��Ү�ރ�BH%@ժH-���"��D8���wƦ*Y���D�8�����$’�`1J�&�d�P��0�% $>�JHm��B&�G��9-oG�i:�r�~9Ⱦ���(9�[|%7����x3 W44�(d)ic�l�R�2F�R\�B���)��i.����:.���F�B������`�#��l���c�����6�ȶA؞��6�_W��f���X�#m}����5���{���E�l���p:F � ��L�F �-F͊S��b(�՗[�rsZ勗�s$’��[l�+�h�E �A��4%L�O��,ilW�^:KZ|��=F��b6�y��2o@Y�3�WNH������]1^X�T|넉a�i}��C��0. �k� �ڄRX���p*��{å*�?�u-�4�L@�@sWe>m���F�(���K�]�]�/6��5� �s��v�����I����u��a��t�̻�=�Y����n��[g�q�_aDb�^/�,G[�hЬ��r�)hɘ��Pcc\M)20������h�˚v.�^p�Q� L4W�U�ֿʓJE@4���3x���y���+6+�n��j��%W���’l�k�r{�T�&,/���4�F��4]P@T憭���S�N�Pe6��>m��\��ƆR��c�W`rU��ͱ����}��ӵ���M����oٺфN��p]ݑtE9%3�ty�’AX���w�+�. S��A��֙��S�WW6i0’���ifu�q��\Lӫ�z&�gV M7Ev�U*�rO%I��֔�%�-`�kk��e�"�a.��B뗎/Ɂ�"<’< �y�E#��4��n��f�e �@l�PV�Oq�X� endstream endobj 534 0 obj <>stream x�]��n�0E�� /�E�yF�R!�Ģ���=�H�X�Y��534�b ���_fT��ֽ���e�w�V��f%� \{�ˆ�^���-�ְ���yr0ԺY����’gg�yV��X�f�^_��\5���1�0�v\��� :_�5��<@ٶV>޻y�5��!�dF� &�J���˅_�O~ �z���d�N~��c�.D$ �Q��DG��(^)AJB�QB�’ʈ*�=R,�Dtz*���*��x��8���4Bm�:��I��Bu�?�$OK�v$/)�\�D"�Vk��Tf���ot��r �Ó7k������Q���ɌfQ-�Q�� endstream endobj 535 0 obj <>stream H����n�8�� ��RZ��H�D�(���m 4���^4{!ۊ#�be%�i߾3tz�ZTRc��)��7��?����ǣ��x�n<��73��-<{���z2~�N_���(!�� �?S��)ƣO�f<:�%�?����x$qRtQ���a~�k��>��>{3���>����i�S����k _{���h�������ko�̚ �2’&�&��|��k .�NE��c�]��’�D"tƊ����FI("�˜� �LIt&~tJ����e� � c��œ|Ě3=Nl�� �R|o/΃�_�R{S"�w�5ʼn����f�sI�’ӗL�F� �� � �Z<4‡b�p��2">d�����Ij���K�E�D1��\�.I2���[�]L�rWL�) {�{�7���rd��Ez�>�rS�%��._�UI������eR���k?E ��ys׌#��f���m��G�f�a�B�,�{��_ҩ��v��تE�s��R�r�%�H�˾�XA�aK5�bKm�vȶ�Qf[�|�� ����˭���Y��͒B]�M�-�+�M��Y;zشe�-�L�q*"�2QrQ=@���N��»꺛�ϼi@�:�����eC/�מFI(�qYQ7� ��Zˡ�ڵ�uu�r�qҖ��3�K������Hh���Q2�#e�-W_’:��}���ߔ��a�Չ3��n���87�0 �N�HG�T’�B��:����25�A) �to�H��$ Ev����tK���I���r[A�-�]?�]pޑH՗�]���ݶ���J�ݢ�Y|3P���m�2�oUA=�K+�j�7@���f�w^�K�l �uY�f�W�dxQ���9׵�- ��P|)�V�v��͢��4h.W����&{.���Gl�?��+��q������<� ?��V���)�݌$C��8`j� endstream endobj 536 0 obj <>stream H��W�k�H~��G����{�`���gȁ��>�Xn��vNv���+�v��I@������fv曌×A��� �;��\&o����fQ����0�}���ٟ��_\�x��B���Kh�A��X�1.^h�y �� ���!4�H�0[�=v[�U�Y�����׻-!�Ş��)�O’�+�����HU�0>��k-���8�W���Gس ,�|״��� @�<| >_��^���#[�r��=k TP�3+SP���V߂�mS��R��݆�)0�>e���2)���P� ��IiO�l�B�Ѧ9.��� `2�`��M<o�6G�N��q>Vui�l]*���x3.\�� > �Ļ�-���EI�d2gK"򕬘Lƹ&�Y)���w<^��Ky@��K�ez�I�$���;^Y�O$��S���3�yr�T<�{e�ť}�j�����q�&,2&l�K7���sO��ӊ�sl��2�Bh �oVT��J&���=UkA1!�Na���yhm�M �sl���^NU>���O�.�THְ*B2�`�(<*�J1�����O�

Related news

Researcher drops Lexmark RCE zero-day rather than sell vuln ‘for peanuts’

Printer exploit chain could be weaponized to fully compromise more than 100 models

Critical RCE Lexmark Printer Bug Has Public Exploit

A nasty SSRF bug in Web Services plagues a laundry list of enterprise printers.

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda
CVE-2023-6905
CVE-2023-6903
CVE-2023-6904
CVE-2023-3907