PT-2024-14904 · Satera+1 · Lbp670C Series+10
Published
2024-02-05
·
Updated
2024-02-13
·
CVE-2023-6231
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Canon imageCLASS MF753Cdw firmware versions prior to v03.08
Satera LBP670C Series/Satera MF750C Series firmware versions prior to v03.08
Color imageCLASS LBP674C/Color imageCLASS X LBP1333C/Color imageCLASS MF750C Series/Color imageCLASS X MF1333C Series firmware versions prior to v03.08
i-SENSYS LBP673Cdw/C1333P/i-SENSYS MF750C Series/C1333i Series firmware versions prior to v03.08
Description
A buffer overflow in the WSD probe request process of Canon Office Multifunction Printers and Laser Printers may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code. This issue can be exploited by attackers on the same network segment without requiring authentication.
Recommendations
For Canon imageCLASS MF753Cdw firmware versions prior to v03.08, update to firmware version v03.08 or later.
For Satera LBP670C Series/Satera MF750C Series firmware versions prior to v03.08, update to firmware version v03.08 or later.
For Color imageCLASS LBP674C/Color imageCLASS X LBP1333C/Color imageCLASS MF750C Series/Color imageCLASS X MF1333C Series firmware versions prior to v03.08, update to firmware version v03.08 or later.
For i-SENSYS LBP673Cdw/C1333P/i-SENSYS MF750C Series/C1333i Series firmware versions prior to v03.08, update to firmware version v03.08 or later.
Fix
Memory Corruption
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
C1333P
C1333I Series
Color Imageclass Lbp674C
Color Imageclass Mf750C Series
Color Imageclass X Lbp1333C
Color Imageclass X Mf1333C Series
Lbp670C Series
Mf750C Series
I-Sensys Lbp673Cdw
I-Sensys Mf750C Series
Imageclass Mf753Cdw