9.8

CVE-2024-12647

Medienbericht
Buffer overflow in CPCA font download processing of Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code. *: Satera MF656Cdw/Satera MF654Cdw firmware v05.04 and earlier sold in Japan. Color imageCLASS MF656Cdw/Color imageCLASS MF654Cdw/Color imageCLASS MF653Cdw/Color imageCLASS MF652Cdw/Color imageCLASS LBP633Cdw/Color imageCLASS LBP632Cdw firmware v05.04 and earlier sold in US. i-SENSYS MF657Cdw/i-SENSYS MF655Cdw/i-SENSYS MF651Cdw/i-SENSYS LBP633Cdw/i-SENSYS LBP631Cdw firmware v05.04 and earlier sold in Europe.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
CanonMf455dw Firmware Version <= 05.04
   CanonMf455dw Version-
CanonMf453dw Firmware Version <= 05.04
   CanonMf453dw Version-
CanonMf452dw Firmware Version <= 05.04
   CanonMf452dw Version-
CanonMf451dw Firmware Version <= 05.04
   CanonMf451dw Version-
CanonMf465dw Firmware Version <= 05.04
   CanonMf465dw Version-
CanonMf462dw Firmware Version <= 05.04
   CanonMf462dw Version-
CanonMf656cdw Firmware Version <= 05.04
   CanonMf656cdw Version-
CanonMf654cdw Firmware Version <= 05.04
   CanonMf654cdw Version-
CanonMf653cdw Firmware Version <= 05.04
   CanonMf653cdw Version-
CanonMf652cw Firmware Version <= 05.04
   CanonMf652cw Version-
CanonMf1238 Ii Firmware Version <= 05.04
   CanonMf1238 Ii Version-
CanonMf1440 Firmware Version <= 05.04
   CanonMf1440 Version-
CanonMf1643if Ii Firmware Version <= 05.04
   CanonMf1643if Ii Version-
CanonMf1643i Ii Firmware Version <= 05.04
   CanonMf1643i Ii Version-
CanonLbp237dw Firmware Version <= 05.04
   CanonLbp237dw Version-
CanonLbp236dw Firmware Version <= 05.04
   CanonLbp236dw Version-
CanonLbp247dw Firmware Version <= 05.04
   CanonLbp247dw Version-
CanonLbp246dw Firmware Version <= 05.04
   CanonLbp246dw Version-
CanonLbp633cdw Firmware Version <= 05.04
   CanonLbp633cdw Version-
CanonLbp632cdw Firmware Version <= 05.04
   CanonLbp632cdw Version-
CanonLbp1238 Ii Firmware Version <= 05.04
   CanonLbp1238 Ii Version-
CanonLbp1440 Firmware Version <= 05.04
   CanonLbp1440 Version-
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.31% 0.534
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
f98c90f0-e9bd-4fa7-911b-51993f3571fd 9.8 3.9 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE-787 Out-of-bounds Write

The product writes data past the end, or before the beginning, of the intended buffer.