Not a U.S. government website. NDD is an independent vulnerability database by Volerion and is not affiliated with or endorsed by NIST or NVD.
CVE-2016-3145 Details
Description
Lexmark printers with firmware ATL before ATL.021.063, CB before CB.021.063, PP before PP.021.063, and YK before YK.021.063 mishandle Erase Printer Memory and Erase Hard Disk actions, which allows physically proximate attackers to obtain sensitive information via direct read operations on non-volatile memory.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
No SSVC data is available for this CVE.
References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| http://support.lexmark.com/index?page=content&id=TE760 | CVE | Vendor Advisory |
| http://support.lexmark.com/index?page=content&id=TE760 | [email protected] | Vendor Advisory |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-200 | Exposure of Sensitive Information to an Unauthorized Actor | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| lexmark printer firmware | >= pp, <= pp.021.062 >= cb, <= cb.021.062 >= yk, <= yk.021.062 >= yk, <= yk.021.057 >= atl, <= atl.021.062 |
CPE
Remediation
| |
| lexmark cx820de | All versions |
CPE
Remediation
| |
| lexmark cx820dtfe | All versions |
CPE
Remediation
| |
| lexmark cx825de | All versions |
CPE
Remediation
| |
| lexmark cx825dte | All versions |
CPE
Remediation
| |
| lexmark cx825dtfe | All versions |
CPE
Remediation
| |
| lexmark cx860de | All versions |
CPE
Remediation
| |
| lexmark cx860dte | All versions |
CPE
Remediation
| |
| lexmark cx860dtfe | All versions |
CPE
Remediation
| |
| lexmark xc6152de | All versions |
CPE
Remediation
| |
| lexmark xc6152dtfe | All versions |
CPE
Remediation
| |
| lexmark xc8155de | All versions |
CPE
Remediation
| |
| lexmark xc8155dte | All versions |
CPE
Remediation
| |
| lexmark xc8160de | All versions |
CPE
Remediation
| |
| lexmark xc8160dte | All versions |
CPE
Remediation
| |
| lexmark c4150 | All versions |
CPE
Remediation
| |
| lexmark cs720de | All versions |
CPE
Remediation
| |
| lexmark cs720dte | All versions |
CPE
Remediation
| |
| lexmark cs725de | All versions |
CPE
Remediation
| |
| lexmark cs725dte | All versions |
CPE
Remediation
| |
| lexmark c6160 | All versions |
CPE
Remediation
| |
| lexmark cs820de | All versions |
CPE
Remediation
| |
| lexmark cs820dte | All versions |
CPE
Remediation
| |
| lexmark cs820dtfe | All versions |
CPE
Remediation
| |
| lexmark cx725de | All versions |
CPE
Remediation
| |
| lexmark cx725dhe | All versions |
CPE
Remediation
| |
| lexmark cx725dthe | All versions |
CPE
Remediation
| |
| lexmark xc4150 | All versions |
CPE
Remediation
| |
Change History
7 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| May 6, 2026 | Status Change | [email protected] |
| Nov 21, 2024 | CVE Modified | CVE |
| May 14, 2024 | CVE Modified | [email protected] |
| Aug 28, 2019 | Reanalysis | [email protected] |
| May 13, 2016 | Modified Analysis | [email protected] |
| May 6, 2016 | Initial Analysis | [email protected] |