Out-of-Bounds Write Vulnerabilities in Canon Printer Drivers
CVE-2025-9903
5.9MEDIUM
Key Information:
- Vendor
Canon Inc.
- Status
- Vendor
- CVE Published:
- 29 September 2025
What is CVE-2025-9903?
The vulnerability in Canon's Generic Plus Printer Drivers allows for out-of-bounds write exploits, which may lead to unauthorized memory access or arbitrary code execution. This issue affects various printer drivers, potentially compromising the functionality and security of devices utilizing these drivers. Users are advised to apply patches or workarounds to mitigate risks associated with these vulnerabilities.
Affected Version(s)
Generic Plus LIPS4 Printer Driver 3.30 and earlier
Generic Plus LIPSLX Printer Driver 3.30 and earlier
Generic Plus PCL6 Printer Driver 3.30 and earlier
References
CVSS V4
Score:
5.9
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
Low
Attack Vector:
Network
Attack Complexity:
High
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
Unknown
Timeline
Vulnerability published
Vulnerability Reserved
