Description
Certain HP DeskJet All in One devices may be vulnerable to remote code execution caused by a buffer overflow when specially crafted Web Services for Devices (WSD) scan requests are improperly validated and handled by the MFP. WSD Scan is a Microsoft Windows–based network scanning protocol that allows a PC to discover scanners (and MFPs) on a network and send scan jobs to them without requiring vendor specific drivers or utilities.
Problem types
CWE-121 Stack-based buffer overflow
Product status
Any version before <2612A
Any version before <2612A
Any version before <2612A
Any version before <2612A
Any version before <2612A
Any version before <2612A
References
support.hp.com/us-en/document/ish_14744451-14744475-16
