HP Printers - Advisory: MS17-010 WannaCry attack
HP DeskJet series printers and multifunction printers
HP Software Solutions
HP Software Solutions rely on their host OS and are not directly involved. The attack
occurs at the OS level and therefore patches or remediation recommendations should be
followed from Microsoft®, the OS provider. The Microsoft® bulletin
2
states, “The security
update addresses the vulnerabilities by correcting how SMBv1 handles specially crafted
requests”.
The following solutions require the SMB protocol and leverage the host OS SMB services.
SMBv1 can be disabled on the host server if the host OS supports SMBv2 or higher.
Note: Windows XP (or earlier) and Windows Server 2003 (and earlier) do not support SMB
versions higher than SMBv1. Customers running these operating systems should apply
the security patches released from Microsoft to allow SMBv1 availability to solutions.
HP Access Control
HP Capture & Route
HP Security Manager
HP Universal Print Driver
HP Web Jetadmin
HP Digital Sending Server
Safecom
Celiveo
Equitrac
What can you do?
Subscribe to HP real-time security information: All HP products use a common
centralized Security Bulletin process managed by HP´s Product Security
Response Team (PSRT). Subscribe to HP Security Bulletins by following these
steps:
1. Go to http://www.hp.com/go/support.
2. Click Get software and drivers.
3. Find your product.
4. Scroll to the bottom of the page and under Other support resources, click
Sign up for driver, support & security alerts.