Buffer Overflow Vulnerabilities in Ricoh Printers
CVE-2019-14308
9.8CRITICAL
What is CVE-2019-14308?
Several Ricoh printers are susceptible to multiple buffer overflow vulnerabilities when processing LPD packets. These vulnerabilities allow attackers to send specially crafted requests to the LPD service, potentially leading to denial of service or arbitrary code execution on impacted devices. The affected firmware versions vary by printer model, with specific configurations identified for the SP C250DN, SP C252DN, SP C250SF, and SP C252SF models up to certain firmware versions.
References
CVSS V3.1
Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
CVSS V3.0
Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
