Buffer Overflow in Canon Office Multifunction Printers and Laser Printers
CVE-2023-0855
Summary
A buffer overflow vulnerability exists in the IPP number-up attribute processing within various Canon Office and Laser Printers. This flaw can be exploited by attackers on the same network segment, potentially causing the printers to become unresponsive or allowing the execution of arbitrary code. The vulnerability affects several models that are running firmware version 11.04 or earlier, including those from the Satera, Color imageCLASS, and i-SENSYS series sold across Japan, the US, and Europe.
Affected Version(s)
Canon Office/Small Office Multifunction Printers and Laser Printers Satera LBP660C Series/LBP620C Series/MF740C Series/MF640C Series firmware Ver.11.04 and earlier sold in Japan. Color imageCLASS LBP660C Series/LBP 620C Series/X LBP1127C/MF740C Series/MF640C Series/X MF1127C firmware Ver.11.04 and earlier sold in US. i-SENSYS LBP660C Series/LBP620C Series/MF740C Series/MF640C Series, C1127P, C1127iF, C1127i firmware Ver.11.04 and earlier sold in Europe.
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved