Xerox WorkCentre PJL Daemon Buffer Overflow Vulnerability
BID:38010
Info
Xerox WorkCentre PJL Daemon Buffer Overflow Vulnerability
| Bugtraq ID: | 38010 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 31 2009 12:00AM |
| Updated: | Feb 01 2010 05:31PM |
| Credit: | Francis Provencher |
| Vulnerable: |
Xerox WorkCentre 4150 |
| Not Vulnerable: | |
Discussion
Xerox WorkCentre PJL Daemon Buffer Overflow Vulnerability
Xerox WorkCentre is prone to a buffer-overflow vulnerability because the application fails to perform adequate boundary checks on user-supplied data.
Attackers can exploit this issue to execute arbitrary code with the privileges of the application or crash the affected application.
Xerox WorkCentre 4150 is vulnerable; other versions may also be affected.
Xerox WorkCentre is prone to a buffer-overflow vulnerability because the application fails to perform adequate boundary checks on user-supplied data.
Attackers can exploit this issue to execute arbitrary code with the privileges of the application or crash the affected application.
Xerox WorkCentre 4150 is vulnerable; other versions may also be affected.
Exploit / POC
Xerox WorkCentre PJL Daemon Buffer Overflow Vulnerability
The following proof of concept is available:
The following proof of concept is available:
Solution / Fix
Xerox WorkCentre PJL Daemon Buffer Overflow Vulnerability
Solution:
Reportedly, the vendor has released a patch for this issue, but Symantec has not confirmed this. Please contact the vendor for more information.
Solution:
Reportedly, the vendor has released a patch for this issue, but Symantec has not confirmed this. Please contact the vendor for more information.
References
Xerox WorkCentre PJL Daemon Buffer Overflow Vulnerability
References:
References:
- WorkCentre 4150 Homepage (Xerox)
- Xerox Homepage (Xerox)
- {PRL} Xerox Workcenter 4150 Remote Buffer Overflow (Francis Provencher
)