Unallocated Memory Access in Canon Generic Plus Printer Drivers
CVE-2025-9904
6.9MEDIUM
Key Information:
- Vendor
Canon Inc.
- Status
- Vendor
- CVE Published:
- 29 September 2025
What is CVE-2025-9904?
The vulnerability presents an unallocated memory access risk in the print processing subsystem of various Canon Generic Plus printer drivers. This flaw may allow an attacker to exploit memory handling issues, potentially leading to unexpected behavior or exposure of sensitive information when processing print jobs. Organizations using affected Canon printer drivers should apply the recommended updates to mitigate potential security risks.
Affected Version(s)
Generic Plus LIPS4 Printer Driver 3.30 and earlier
Generic Plus LIPSLX Printer Driver 3.30 and earlier
Generic Plus PCL6 Printer Driver 3.30 and earlier
References
CVSS V4
Score:
6.9
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None
Timeline
Vulnerability published
Vulnerability Reserved
