| [Japanese] | |
JVNDB-2025-001238 | |
Multiple out-of-bounds write vulnerabilities in Canon Office/Small Office Multifunction Printers and Laser Printers | |
| Overview | |
Office/Small Office Multifunction Printers and Laser Printers provided by Canon Inc. contain multiple out-of-bounds write vulnerabilities (CWE-787, CVE-2024-12647, CVE-2024-12648, CVE-2024-12649, CVE-2025-2146). | |
| CVSS Severity (What is CVSS?) | |
|
CVSS V3 Severity:
Base Metrics 9.8 (Critical) [Other]
| |
| Affected Products | |
A wide range of products and versions are affected. For more information, refer to "Vendor Information" section below. | |
Canon | |
|
| |
| Impact | |
A remote attacker may execute arbitrary code and/or cause a denial-of-service (DoS) condition. | |
| Solution | |
[Update the firmware] | |
| Vendor Information | |
Canon | |
| CWE (What is CWE?) | |
| |
| CVE (What is CVE?) | |
|
| |
| References | |
| |
| Revision History | |
|
| Date Public | 2025/01/28 |
| Date First Published | 2025/01/29 |
| Date Last Updated | 2025/05/27 |


