9.8
CVE-2024-12648
- EPSS 0.44%
- Veröffentlicht 28.01.2025 01:15:08
- Zuletzt bearbeitet 26.01.2026 15:08:11
- Quelle f98c90f0-e9bd-4fa7-911b-51993f
- CVE-Watchlists
- Unerledigt
Buffer overflow in TIFF data EXIF tag processing of Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code. *: Satera MF656Cdw/Satera MF654Cdw firmware v05.04 and earlier sold in Japan. Color imageCLASS MF656Cdw/Color imageCLASS MF654Cdw/Color imageCLASS MF653Cdw/Color imageCLASS MF652Cdw/Color imageCLASS LBP633Cdw/Color imageCLASS LBP632Cdw firmware v05.04 and earlier sold in US. i-SENSYS MF657Cdw/i-SENSYS MF655Cdw/i-SENSYS MF651Cdw/i-SENSYS LBP633Cdw/i-SENSYS LBP631Cdw firmware v05.04 and earlier sold in Europe.
Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Canon ≫ Mf455dw Firmware Version <= 05.04
Canon ≫ Mf453dw Firmware Version <= 05.04
Canon ≫ Mf452dw Firmware Version <= 05.04
Canon ≫ Mf451dw Firmware Version <= 05.04
Canon ≫ Mf465dw Firmware Version <= 05.04
Canon ≫ Mf462dw Firmware Version <= 05.04
Canon ≫ Mf656cdw Firmware Version <= 05.04
Canon ≫ Mf654cdw Firmware Version <= 05.04
Canon ≫ Mf653cdw Firmware Version <= 05.04
Canon ≫ Mf652cw Firmware Version <= 05.04
Canon ≫ Mf1238 Ii Firmware Version <= 05.04
Canon ≫ Mf1440 Firmware Version <= 05.04
Canon ≫ Mf1643if Ii Firmware Version <= 05.04
Canon ≫ Mf1643i Ii Firmware Version <= 05.04
Canon ≫ Lbp237dw Firmware Version <= 05.04
Canon ≫ Lbp236dw Firmware Version <= 05.04
Canon ≫ Lbp247dw Firmware Version <= 05.04
Canon ≫ Lbp246dw Firmware Version <= 05.04
Canon ≫ Lbp633cdw Firmware Version <= 05.04
Canon ≫ Lbp632cdw Firmware Version <= 05.04
Canon ≫ Lbp1238 Ii Firmware Version <= 05.04
Canon ≫ Lbp1440 Firmware Version <= 05.04
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.44% | 0.628 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| f98c90f0-e9bd-4fa7-911b-51993f3571fd | 9.8 | 3.9 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
CWE-787 Out-of-bounds Write
The product writes data past the end, or before the beginning, of the intended buffer.