The Lexmark Universal Print Driver version 2.15.1.0 and below, G2 driver 2.7.1.0 and below, G3 driver 3.2.0.0 and below, and G4 driver 4.2.1.0 and below are affected by a privilege escalation vulnerability. A standard low priviliged user can use the driver to execute a DLL of their choosing during the add printer process, resulting in escalation of privileges to SYSTEM.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2021-07-19T14:16:42

Updated: 2021-08-12T17:06:14

Reserved: 2021-06-23T00:00:00


Link: CVE-2021-35449

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2021-07-19T15:15:07.780

Modified: 2021-09-20T12:21:54.517


Link: CVE-2021-35449

JSON object: View

cve-icon Redhat Information

No data.

CWE