CVE-2025-0235

CVSS 3.1 Score 5.3 of 10 (medium)

Details

Published Feb 26, 2025
CWE ID 787

Summary

CVE-2025-0235 is a memory vulnerability affecting the Generic PCL6 V4 Printer Driver, Generic UFR II V4 Printer Driver, and Generic LIPSLX V4 Printer Drivers. The issue arises from improper memory release during image rendering, leading to out-of-bounds access. An attacker could exploit this vulnerability by sending specially crafted print jobs to gain unauthorized access to memory or cause the system to crash. Successful exploitation may result in information disclosure or even code execution, potentially leading to serious security implications for affected systems. It is recommended that users apply the available patches as soon as possible to mitigate the risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Generic UFR II V4 Printer Driver
  • Generic PCL6 V4 Printer Driver