Buffer Overflow in Canon Multifunction and Laser Printers
CVE-2023-0854
Summary
A vulnerability exists in the NetBIOS QNAME registering and communication process of Canon's Office and Small Office Multifunction and Laser Printers. This flaw could allow an attacker on the same network segment to cause the affected printer to become unresponsive or potentially execute arbitrary code. Affected firmware versions include 11.04 and earlier for various models across different regions, including Japan, the US, and Europe. Users are urged to review security advisories and update their devices accordingly.
Affected Version(s)
Canon Office/Small Office Multifunction Printers and Laser Printers Satera LBP660C Series/LBP620C Series/MF740C Series/MF640C Series firmware Ver.11.04 and earlier sold in Japan. Color imageCLASS LBP660C Series/LBP 620C Series/X LBP1127C/MF740C Series/MF640C Series/X MF1127C firmware Ver.11.04 and earlier sold in US. i-SENSYS LBP660C Series/LBP620C Series/MF740C Series/MF640C Series, C1127P, C1127iF, C1127i firmware Ver.11.04 and earlier sold in Europe.
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved