CVE-2025-4044: Lexmark Printer Software g2
High severity, CVSS 8.2. EPSS: 0.2% chance of exploitation in the next 30 days.
Improper Restriction of XML External Entity Reference in various Lexmark printer drivers for Windows allows attacker to disclose sensitive information to an arbitrary URL.
Affected products
- Lexmark Printer Software g2: before 2.17.0.0 (fixed in 2.17.0.0)
- Lexmark Universal Print Driver: before 3.0.6.0 (fixed in 3.0.6.0)
Published 2025-08-19. Last modified 2026-06-17.