CVE-2026-50100: High severity Ricoh Ricoh printer drivers vulnerability
Multiple printer drivers provided by Ricoh Company, Ltd. and KONICA MINOLTA JAPAN, INC. contain a privilege escalation vulnerability. If this vulnerability is exploited, an attacker who can log in to a computer running an affected printer driver could elevate privileges by using a specially crafted driver.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
Ricoh printer driversfrom your environment.If not required, uninstall Ricoh printer drivers from affected systems. If removal is not possible, ensure only trusted administrators can install or update these drivers until a vendor fix is available.
- Remove
Remove
KONICA MINOLTA printer driversfrom your environment.If not required, uninstall KONICA MINOLTA printer drivers from affected systems. If removal is not possible, ensure only trusted administrators can install or update these drivers until a vendor fix is available.
- Configuration
Configure systems to require administrative privileges for installing or updating printer drivers so a logged-in non-privileged user cannot install a specially crafted driver.
Printer driver installation policy allow_non_admin_driver_install = false - Compensating control
Restrict interactive logon and local account privileges on hosts that run the affected printer drivers to trusted administrators only. Use access controls (group policy, host-based controls, or similar) to prevent untrusted users from logging in to those systems.
- Operational
Monitor and audit driver installation activity and local privilege escalation indicators on affected systems; investigate and remove any unrecognized or suspicious printer drivers.
Event History
Frequently Asked Questions
What is the severity of CVE-2026-50100?
The severity of CVE-2026-50100 is rated as high with a score of 7.8.
How do I fix CVE-2026-50100?
To fix CVE-2026-50100, update to the latest versions of the affected Ricoh and Konica Minolta printer drivers.
What systems are affected by CVE-2026-50100?
CVE-2026-50100 affects systems running specific printer drivers from Ricoh Company, Ltd. and Konica Minolta JAPAN, INC.
What type of vulnerability is CVE-2026-50100?
CVE-2026-50100 is a privilege escalation vulnerability that allows an attacker to elevate privileges on a compromised system.
Can an unauthenticated attacker exploit CVE-2026-50100?
No, an attacker must have access to a computer running an affected printer driver to exploit CVE-2026-50100.