(BTW, on XP, some Lexmark printers don't have to have this 
Service running, and some do.  So on some, this Service can be 
disabled, it's founder under XP's "Services".  Like all 
Services, it can be double-clicked and its properties changed).
-Clint




TITLE:
Lexmark Printers LexBce Server Arbitrary Code Execution

SECUNIA ADVISORY ID:
SA18744

VERIFY ADVISORY:
http://secunia.com/advisories/18744/

CRITICAL:
Moderately critical

IMPACT:
System access

WHERE:
>From local network

OPERATING SYSTEM:
Lexmark X1100 Series
http://secunia.com/product/7842/

SOFTWARE:
Lexmark LexBce Server (LexPPS) 8.x
http://secunia.com/product/7856/
Lexmark LexBce Server (LexPPS) 9.x
http://secunia.com/product/7847/

DESCRIPTION:
A vulnerability in the LexBce Server Service included
with various Lexmark printers, which can be exploited
by malicious people to compromise a user's system.

The vulnerability is caused due to an unspecified error
in the printer sharing service provided by the LexBce
Server Service (LexPPS.EXE). This can be exploited
to execute arbitrary code on a system with Lexmark
printer installed.

NOTE: The service is installed with the printer drivers
of Lexmark X1100 series (LexPPS version 8.29),
and X2200 series (LexPPS version 9.41). Other
Lexmark printers may also have the service installed.

SOLUTION:
Disable the service if printer sharing is not required.
============= PCWorks Mailing List =================
Don't see your post? Check our posting guidelines &
make sure you've followed proper posting procedures,
http://pcworkers.com/rules.htm
Contact list owner <[EMAIL PROTECTED]>
Unsubscribing and other changes: http://pcworkers.com
=====================================================

Reply via email to