We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2023-50738

A firmware downgrade prevention vulnerability has been identified in newer Lexmark devices.



Description

A new feature to prevent Firmware downgrades was recently added to some Lexmark products. A method to override this downgrade protection has been identified.

Reserved 2023-12-11 | Published 2025-01-17 | Updated 2025-01-17 | Assigner Lexmark


MEDIUM: 4.3CVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L

Problem types

CWE-354 Improper Validation of Integrity Check Value

CWE-1328 Security Version Number Mutable to Older Versions

Product status

Default status
unaffected

Any version
affected

230.075
affected

230.100
affected

230.200
affected

References

www.lexmark.com/...security/lexmark-security-advisories.html

cve.org (CVE-2023-50738)

nvd.nist.gov (CVE-2023-50738)

Download JSON

Share this page
https://cve.threatint.com/CVE/CVE-2023-50738

Support options

Helpdesk Chat, Email, Knowledgebase
Subscribe to our newsletter to learn more about our work.