PT-2024-14902 · Canon+1 · Canon I-Sensys Lbp673Cdw+9

Nguyen Quoc

·

Published

2024-02-05

·

Updated

2024-02-13

·

CVE-2023-6229

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Canon imageCLASS LBP674C versions v03.07 and earlier Canon imageCLASS X LBP1333C versions v03.07 and earlier Canon imageCLASS MF750C Series versions v03.07 and earlier Canon imageCLASS X MF1333C Series versions v03.07 and earlier Canon i-SENSYS LBP673Cdw versions v03.07 and earlier Canon i-SENSYS C1333P versions v03.07 and earlier Canon i-SENSYS MF750C Series versions v03.07 and earlier Canon i-SENSYS C1333i Series versions v03.07 and earlier Satera LBP670C Series versions v03.07 and earlier Satera MF750C Series versions v03.07 and earlier
Description A buffer overflow in the CPCA PDL Resource Download process of Office Multifunction Printers and Laser Printers may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code.
Recommendations For Canon imageCLASS LBP674C versions v03.07 and earlier, update to a version later than v03.07. For Canon imageCLASS X LBP1333C versions v03.07 and earlier, update to a version later than v03.07. For Canon imageCLASS MF750C Series versions v03.07 and earlier, update to a version later than v03.07. For Canon imageCLASS X MF1333C Series versions v03.07 and earlier, update to a version later than v03.07. For Canon i-SENSYS LBP673Cdw versions v03.07 and earlier, update to a version later than v03.07. For Canon i-SENSYS C1333P versions v03.07 and earlier, update to a version later than v03.07. For Canon i-SENSYS MF750C Series versions v03.07 and earlier, update to a version later than v03.07. For Canon i-SENSYS C1333i Series versions v03.07 and earlier, update to a version later than v03.07. For Satera LBP670C Series versions v03.07 and earlier, update to a version later than v03.07. For Satera MF750C Series versions v03.07 and earlier, update to a version later than v03.07.

Fix

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2023-6229
ZDI-24-089

Affected Products

Canon I-Sensys C1333P
Canon I-Sensys C1333I Series
Canon I-Sensys Lbp673Cdw
Canon I-Sensys Mf750C Series
Canon Imageclass Lbp674C
Canon Imageclass Mf750C Series
Canon Imageclass X Lbp1333C
Canon Imageclass X Mf1333C Series
Satera Lbp670C Series
Satera Mf750C Series