CVE-2016-2542 PUBLISHED CVSS 7.800000190734863 HIGH

Multiple software installers provided by Brother Industries, Ltd. may insecurely load some dynamic link libraries.<ul><li>Uncontrolled search path element (CWE-427) - CVE-2016-2542, CVE-2021-41526</li></ul>Kazuma Matsumoto of GMO Cybersecurity by Ierae, Inc. reported this vulnerability to Brother Industries, Ltd. and coordinated. After the coordination was completed, Brother Industries, Ltd. reported the case to JPCERT/CC to notify users of the solution through JVN.

EPSS 0.19% · 40.1th percentile

Risk Scores

CVSS v3.0
7.800000190734863
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
0.19%
40.1th percentile

Affected Products

VendorProductVersions
Brother IndustriesUniversal Printer Driver
Brother IndustriesStatus Monitor Update Tool
Brother IndustriesUniversal Printer Driver for PCL
Brother IndustriesUniversal Printer Driver for BR-Script (PostScript language emulation)
Brother IndustriesSoftware Update Notification Updater

Timeline

References

Open in Interactive Console →