Description
Buffer overflow in WebService Authentication processing of Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code. *: Satera MF656Cdw/Satera MF654Cdw/Satera MF551dw/Satera MF457dw firmware v05.07 and earlier sold in Japan. Color imageCLASS MF656Cdw/Color imageCLASS MF654Cdw/Color imageCLASS MF653Cdw/Color imageCLASS MF652Cdw/Color imageCLASS LBP633Cdw/Color imageCLASS LBP632Cdw/imageCLASS MF455dw/imageCLASS MF453dw/imageCLASS MF452dw/imageCLASS MF451dw/imageCLASS LBP237dw/imageCLASS LBP236dw/imageCLASS X MF1238 II/imageCLASS X MF1643i II/imageCLASS X MF1643iF II/imageCLASS X LBP1238 II firmware v05.07 and earlier sold in US. i-SENSYS MF657Cdw/i-SENSYS MF655Cdw/i-SENSYS MF651Cdw/i-SENSYS LBP633Cdw/i-SENSYS LBP631Cdw/i-SENSYS MF553dw/i-SENSYS MF552dw/i-SENSYS MF455dw/i-SENSYS MF453dw/i-SENSYS LBP236dw/i-SENSYS LBP233dw/imageRUNNER 1643iF II/imageRUNNER 1643i II/i-SENSYS X 1238iF II/i-SENSYS X 1238i II/i-SENSYS X 1238P II/i-SENSYS X 1238Pr II firmware v05.07 and earlier sold in Europe.
CVSS breakdown
Affected products
- Canon Inc. / Color imageCLASS LBP632Cdw05.07 and earlier – 05.07 and earlier
- Canon Inc. / Color imageCLASS LBP633Cdw05.07 and earlier – 05.07 and earlier
- Canon Inc. / Color imageCLASS MF652Cdw05.07 and earlier – 05.07 and earlier
- Canon Inc. / Color imageCLASS MF653Cdw05.07 and earlier – 05.07 and earlier
- Canon Inc. / Color imageCLASS MF654Cdw05.07 and earlier – 05.07 and earlier
- Canon Inc. / Color imageCLASS MF656Cdw05.07 and earlier – 05.07 and earlier
- Canon Inc. / imageCLASS LBP236dw05.07 and earlier – 05.07 and earlier
- Canon Inc. / imageCLASS LBP237dw05.07 and earlier – 05.07 and earlier
- Canon Inc. / imageCLASS MF451dw05.07 and earlier – 05.07 and earlier
- Canon Inc. / imageCLASS MF452dw05.07 and earlier – 05.07 and earlier
- Canon Inc. / imageCLASS MF453dw05.07 and earlier – 05.07 and earlier
- Canon Inc. / imageCLASS MF455dw05.07 and earlier – 05.07 and earlier
- Canon Inc. / imageCLASS X LBP1238 II05.07 and earlier – 05.07 and earlier
- Canon Inc. / imageCLASS X MF1238 II05.07 and earlier – 05.07 and earlier
- Canon Inc. / imageCLASS X MF1643iF II05.07 and earlier – 05.07 and earlier
- Canon Inc. / imageCLASS X MF1643i II05.07 and earlier – 05.07 and earlier
- Canon Inc. / imageRUNNER 1643iF II05.07 and earlier – 05.07 and earlier
- Canon Inc. / imageRUNNER 1643i II05.07 and earlier – 05.07 and earlier
- Canon Inc. / i-SENSYS LBP233dw05.07 and earlier – 05.07 and earlier
- Canon Inc. / i-SENSYS LBP236dw05.07 and earlier – 05.07 and earlier
- Canon Inc. / i-SENSYS LBP631Cdw05.07 and earlier – 05.07 and earlier
- Canon Inc. / i-SENSYS LBP633Cdw05.07 and earlier – 05.07 and earlier
- Canon Inc. / i-SENSYS MF453dw05.07 and earlier – 05.07 and earlier
- Canon Inc. / i-SENSYS MF455dw05.07 and earlier – 05.07 and earlier
- Canon Inc. / i-SENSYS MF552dw05.07 and earlier – 05.07 and earlier
- Canon Inc. / i-SENSYS MF553dw05.07 and earlier – 05.07 and earlier
- Canon Inc. / i-SENSYS MF651Cdw05.07 and earlier – 05.07 and earlier
- Canon Inc. / i-SENSYS MF655Cdw05.07 and earlier – 05.07 and earlier
- Canon Inc. / i-SENSYS MF657Cdw05.07 and earlier – 05.07 and earlier
- Canon Inc. / i-SENSYS X 1238iF II05.07 and earlier – 05.07 and earlier
- Canon Inc. / i-SENSYS X 1238i II05.07 and earlier – 05.07 and earlier
- Canon Inc. / i-SENSYS X 1238P II05.07 and earlier – 05.07 and earlier
- Canon Inc. / i-SENSYS X 1238Pr II05.07 and earlier – 05.07 and earlier
- Canon Inc. / Satera MF457dw05.07 and earlier – 05.07 and earlier
- Canon Inc. / Satera MF551dw05.07 and earlier – 05.07 and earlier
- Canon Inc. / Satera MF654Cdw05.07 and earlier – 05.07 and earlier
- Canon Inc. / Satera MF656Cdw05.07 and earlier – 05.07 and earlier
References
- VENDOR_ADVISORYhttps://psirt.canon/advisory-information/cp2025-001/
- MISChttps://canon.jp/support/support-info/250127vulnerability-response
- VENDOR_ADVISORYhttps://www.usa.canon.com/support/canon-product-advisories/service-notice-regarding-vulnerability-measure-against-buffer-overflow-for-laser-printers-and-small-office-multifunctional-printers
- MISChttps://www.canon-europe.com/support/product-security/#news