-
×InformationNeed Windows 11 help?Check documents on compatibility, FAQs, upgrade information and available fixes.
Windows 11 Support Center. -
-
×InformationNeed Windows 11 help?Check documents on compatibility, FAQs, upgrade information and available fixes.
Windows 11 Support Center. -
- HP Community
- Archived Topics
- Unanswered Topics - Printers
- (CVE-2021-3438) strncpy high-severity privilege-escalation

Create an account on the HP Community to personalize your profile and ask a question

07-24-2021 02:42 PM
I have seen some articles on the 16-year old vulnerability mentioning that there is a list of printers on the hp.com site showing the ones impacted. When I use that link, it prompts me for the printer name and then points to several drivers, yet there is no indication as to whether they include CVE-2021-3438 remediation or not, hence I searched further and found a list https://support.hp.com/us-en/document/ish_3900395-3833905-16/hpsbpi03724 yet it does not have the M452 series listed, yet I see new drivers from March 4 and March 6 2021, where only the full solution with filename HP_LJ_Pro_M452-PCL_6_v3_Win8plus_Full_Solution-19117.exe (84.5 MB) indicates : "Fixed the Security Vulnerability" without mentioning which. As I need to move the printer to a different floor so as to have internet connectivity while applying the update, I just want to make sure this update is relevant as the M452 is not in the CVE-2021-3438 list in the link above.
