{"id":4303,"date":"2017-11-22T05:33:42","date_gmt":"2017-11-22T04:33:42","guid":{"rendered":"http:\/\/borncity.com\/win\/?p=4303"},"modified":"2024-10-05T23:07:44","modified_gmt":"2024-10-05T21:07:44","slug":"security-update-for-hp-printers-shall-coming-this-week","status":"publish","type":"post","link":"https:\/\/borncity.com\/win\/2017\/11\/22\/security-update-for-hp-printers-shall-coming-this-week\/","title":{"rendered":"Security update for HP printers is available"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" style=\"float: left; margin: 0px 10px 0px 0px; display: inline;\" src=\"http:\/\/www.borncity.com\/blog\/wp-content\/uploads\/2015\/01\/Schutz.jpg\" width=\"40\" height=\"47\" align=\"left\" \/>[<a href=\"http:\/\/www.borncity.com\/blog\/2017\/11\/22\/firmware-update-fr-hp-drucker-sicherheitslcke-erwartet\/\" target=\"_blank\" rel=\"noopener noreferrer\">German<\/a>]There are security vulnerabilities in the firmware of various HP printers that allow remote code execution. HP is supposedly preparing a firmware update, which should be released this week. Update: The firmware update has been released.<\/p>\n<p><!--more--><\/p>\n<p>According to <a href=\"https:\/\/www.theregister.co.uk\/2017\/11\/21\/patch_coming_for_hp_printer_vulnerabilities\/\" target=\"_blank\" rel=\"noopener noreferrer\">The Register<\/a>, the HP MFP-586 and M553 printer models are affected with a remote code execution vulnerability. Security researchers at foxglovesecurity. com had uncovered several bugs and vulnerabilities in the firmware of these printer models and informed HP.<\/p>\n<p><img decoding=\"async\" title=\"HP printer MFP 586\" src=\"https:\/\/i.imgur.com\/IgzSxgq.jpg\" alt=\"HP printer MFP 586\" \/><\/p>\n<p>The vulnerabilities are discussed within this <a href=\"https:\/\/foxglovesecurity.com\/2017\/11\/20\/a-sheep-in-wolfs-clothing-finding-rce-in-hps-printer-fleet\/\" target=\"_blank\" rel=\"noopener noreferrer\">document<\/a>. It's possible to manipulate PIN protected print jobs or resetting the devices to factory defaults. If the information provided by The Register are accurate, HP will ship a firmware updates for affected printers this week to close these vulnerabilities.<\/p>\n<h2>HP-Security Bulletin and Firmware-Update<\/h2>\n<p>Addendum: HP has released Security Bulletin\u00a0<a href=\"https:\/\/web.archive.org\/web\/20240101021045\/https:\/\/support.hp.com\/nz-en\/document\/c05839270\" target=\"_blank\" rel=\"noopener noreferrer\">c05839270<\/a>, dated November 17, 2017. This bulletin contains a description of vulnerability CVE-2017-2750, PSR-2017-0141. The document also enlists all vulnerable HP Office printers and the firmware updates.<\/p>\n<p>To download the new firmware, visit the\u00a0HP website\u00a0in your\u00a0browser, and select the category\u00a0<em>Support<\/em>\u00a0angew\u00e4hlt werden. Enter the product name in search box, scroll down in the search results to firmware and download the necessary files.<\/p>\n<blockquote><p>&nbsp;<\/p><\/blockquote>\n","protected":false},"excerpt":{"rendered":"<p>[German]There are security vulnerabilities in the firmware of various HP printers that allow remote code execution. HP is supposedly preparing a firmware update, which should be released this week. Update: The firmware update has been released.<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[448,580],"tags":[68,1147,69,195],"class_list":["post-4303","post","type-post","status-publish","format-standard","hentry","category-devices","category-security","tag-firmware","tag-hp-printer","tag-security","tag-update"],"_links":{"self":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/posts\/4303","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/comments?post=4303"}],"version-history":[{"count":1,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/posts\/4303\/revisions"}],"predecessor-version":[{"id":35951,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/posts\/4303\/revisions\/35951"}],"wp:attachment":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/media?parent=4303"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/categories?post=4303"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/tags?post=4303"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}