Buffer Overflow in Canon Multifunction Printers and Laser Printers
CVE-2023-6229
9.8CRITICAL
Key Information:
- Vendor
- Canon Inc.
- Vendor
- CVE Published:
- 6 February 2024
Summary
A buffer overflow vulnerability exists in the CPCA PDL Resource Download process of various Canon multifunction printers and laser printers. This vulnerability may allow attackers on the same network segment to trigger the affected devices, leading to potential unresponsiveness or execution of arbitrary code. The issue primarily affects certain models such as the Satera series and Color imageCLASS products when running specific firmware versions. Urgent updates are recommended to mitigate the risks associated with this vulnerability.
Affected Version(s)
C1333i Series 03.07 and earlier
C1333P 03.07 and earlier
Color imageCLASS LBP674C 03.07 and earlier
References
CVSS V3.1
Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved