Security Vulnerability in Our printer driver

A security vulnerability has been identified in the printer driver "KX Driver" developed for the functions of multifunction devices and printers provided by KYOCERA Document Solutions.
The following is an overview of the issue and how to resolve it. As of the date of publication of this notice, we have not confirmed any attacks that take advantage of this vulnerability.


【Vulnerability description】

The vulnerability relates to a vulnerability known as Microsoft Windows Unquoted Service Path Enumeration. The creation of an unquoted service may allow an attacker to run arbitrary programs (such as malware) with Windows system privileges.

Vulnerability number: CVE-2023-38634



【Countermeasures】

As a countermeasure, we provide a new "KX Driver" that addresses security vulnerability. Please install the latest driver.

*This has been addressed in the "KX Driver" (version 8.4.1716).



【Contact Information】

For more information, please contact your local distributor where you purchased the product.

KYOCERA Document Solutions India Pvt. Ltd.
First Floor, Block - A, First India Place,
Sushant Lok Phase - 1, M. G. Road, Gurugram - 122002 (Haryana), India
Gurgaon – 122002 , Haryana
Phone : +91 124 4671000
Fax : +91 124 4671001
Toll Free: 1800 103 7172