Entrust Datacard · Entrust Datacard Xps Card Printer Driver · CVE-2024-34329
**Name of the Vulnerable Software and Affected Versions**
Entrust Datacard XPS Card Printer Driver versions 8.5 and earlier without the dxp1-patch-E24-004 patch
Entrust Datacard XPS Card Printer Driver versions 8.4 and earlier
**Description**
The issue is related to insecure permissions in the Entrust Datacard XPS Card Printer Driver, allowing unauthenticated attackers to execute arbitrary code as SYSTEM via a crafted DLL payload.
**Recommendations**
For Entrust Datacard XPS Card Printer Driver versions 8.5 and earlier, apply the dxp1-patch-E24-004 patch to resolve the issue.
For Entrust Datacard XPS Card Printer Driver versions 8.4 and earlier, update to a version that includes the necessary security fixes, or apply the dxp1-patch-E24-004 patch if available.