Information Security News mailing list archives

SNMP exploit causes printers to jam


From: InfoSec News <isn () c4i org>
Date: Fri, 22 Feb 2002 02:53:01 -0600 (CST)

http://www.theregister.co.uk/content/54/24163.html

By John Leyden
Posted: 21/02/2002 at 17:05 GMT

A denial of service vulnerability has been reported in some versions
of the firmware for Hewlett-Packard JetDirect printers.

According to a vulnerability note on the BugTraq security mailing
list, HP printers are far more vulnerable to SNMP vulnerabilities than
was at first believed when general problems with the protocol surfaced
earlier this month.

If even a single malformed SNMP packet is received by the printer
running the latest versions of HP's firmware it will crash, early
tests suggest. A restart may be required in order to regain normal
functionality.

HP has yet to issue a response on the issue.



-
ISN is currently hosted by Attrition.org

To unsubscribe email majordomo () attrition org with 'unsubscribe isn' in the BODY
of the mail.


Current thread: