CVE-2019-6327

HP Color LaserJet Pro M280-M281 Multifunction Printer series (before v. 20190419), HP LaserJet Pro MFP M28-M31 Printer series (before v. 20190426) may have an IPP Parser potentially vulnerable to Buffer Overflow.
References
Link Resource
https://support.hp.com/us-en/document/c06356322 Vendor Advisory
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:hp:laserjet_pro_m280-m281_t6b80a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:laserjet_pro_m280-m281_t6b80a:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:hp:laserjet_pro_m280-m281_t6b83a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:laserjet_pro_m280-m281_t6b83a:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:hp:laserjet_pro_m280-m281_t6b81a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:laserjet_pro_m280-m281_t6b81a:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:hp:laserjet_pro_m280-m281_t6b82a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:laserjet_pro_m280-m281_t6b82a:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:hp:laserjet_pro_mfp_m28-m31_w2g54a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:laserjet_pro_mfp_m28-m31_w2g54a:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:hp:laserjet_pro_mfp_m28-m31_w2g55a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:laserjet_pro_mfp_m28-m31_w2g55a:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:hp:laserjet_pro_mfp_m28-m31_y5s53a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:laserjet_pro_mfp_m28-m31_y5s53a:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:hp:laserjet_pro_mfp_m28-m31_y5s55a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:laserjet_pro_mfp_m28-m31_y5s55a:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:o:hp:laserjet_pro_mfp_m28-m31_y5s50a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:laserjet_pro_mfp_m28-m31_y5s50a:-:*:*:*:*:*:*:*

Configuration 10 (hide)

AND
cpe:2.3:o:hp:laserjet_pro_mfp_m28-m31_y5s54a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:hp:laserjet_pro_mfp_m28-m31_y5s54a:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2019-06-17 16:15

Updated : 2023-12-10 12:59


NVD link : CVE-2019-6327

Mitre link : CVE-2019-6327

CVE.ORG link : CVE-2019-6327


JSON object : View

Products Affected

hp

  • laserjet_pro_mfp_m28-m31_y5s50a_firmware
  • laserjet_pro_mfp_m28-m31_y5s50a
  • laserjet_pro_m280-m281_t6b80a
  • laserjet_pro_m280-m281_t6b81a
  • laserjet_pro_mfp_m28-m31_y5s54a
  • laserjet_pro_mfp_m28-m31_w2g55a
  • laserjet_pro_m280-m281_t6b83a_firmware
  • laserjet_pro_mfp_m28-m31_w2g54a_firmware
  • laserjet_pro_mfp_m28-m31_y5s53a_firmware
  • laserjet_pro_mfp_m28-m31_y5s54a_firmware
  • laserjet_pro_mfp_m28-m31_y5s55a
  • laserjet_pro_m280-m281_t6b83a
  • laserjet_pro_m280-m281_t6b82a_firmware
  • laserjet_pro_mfp_m28-m31_w2g54a
  • laserjet_pro_mfp_m28-m31_w2g55a_firmware
  • laserjet_pro_m280-m281_t6b81a_firmware
  • laserjet_pro_mfp_m28-m31_y5s55a_firmware
  • laserjet_pro_mfp_m28-m31_y5s53a
  • laserjet_pro_m280-m281_t6b80a_firmware
  • laserjet_pro_m280-m281_t6b82a
CWE
CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')