CVE-2025-1004
MEDIUMDescription
Certain HP LaserJet Pro printers may potentially experience a denial of service when a user sends a raw JPEG file to the printer via IPP (Internet Printing Protocol).
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| hp | g3q78a_firmware |
| hp | g3q78a |
| hp | g3q79a_firmware |
| hp | g3q79a |
| hp | q3q75a_firmware |
| hp | q3q75a |
| hp | g3q74a_firmware |
| hp | g3q74a |
| hp | g3q77a_firmware |
| hp | g3q77a |
| hp | g3q76a_firmware |
| hp | g3q76a |
| hp | 4pa41a_firmware |
| hp | 4pa41a |
| hp | 4pa42a_firmware |
| hp | 4pa42a |
| hp | 4pa43a_firmware |
| hp | 4pa43a |
| hp | 4pa44a_firmware |
| hp | 4pa44a |
References
Advisories & Patches
Frequently Asked Questions
What is CVE-2025-1004? +
How severe is CVE-2025-1004? +
What products are affected by CVE-2025-1004? +
How do I check if I'm vulnerable to CVE-2025-1004? +
Related Vulnerabilities
The HP LaserJet MFP M232-M237 Printer Series may be vulnerable to a denial of service attack when a specially crafted …
All versions of the package images are vulnerable to Denial of Service (DoS) due to providing unexpected input types to …
All versions of the package speaker are vulnerable to Denial of Service (DoS) when providing unexpected input types to the …
An issue in Eprosima Micro-XREC-DDS Agent v.3.0.1 allows a remote attacker to cause a denial of service via a packet …
Insufficient argument checking in Secure state Entry functions in software using Cortex-M Security Extensions (CMSE), that has been compiled using …
Nextcloud Calendar is a calendar app for Nextcloud. Prior to 4.7.17 and 5.2.4, when a malicious user creates a calendar …