Notice elevation of administrator privileges vulnerability in Printer Driver Packager NX.

21 Feb 2023

First published: 04:00 pm on February 21, 2023 (2023-02-21T14:00:00+09:00)

Ricoh Company, Ltd.

Ricoh understands the importance of security and is committed to managing its products and services with the most advanced security technologies possible for its customers worldwide.

Ricoh is aware of the reported "local privilege escalation" affects certain products and services that Ricoh develops, manufactures, and offers.


There is a vulnerability about local privilege escalation in the driver installation package created by Printer Driver Packeager NX.

 Vulnerability Information IDricoh-2023-000001
 Version1.00E
 CVE ID(CWE ID)
 CVSSv3 score7.8  High 

List 1: Ricoh products and services affected by this vulnerability

Product/service  Link to details
Printer Driver Packager NXAffected. For details, please refer to the following URL.
https://www.ricoh.com/products/security/vulnerabilities/adv?id=ricoh-prod000048-2023-000001

Contact

Please contact your local Ricoh representative or dealer if you have any queries.

Acknowledgement:

Ricoh would like to thank International Flavors & Fragrances. for reporting this vulnerability.

History:

2023-02-21T14:00:00+09:00 : 1.00E Initial public release