Vulnerability Description
Buffer overflow in CPCA PCFAX number process of Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code.*:Satera MF750C Series firmware v03.07 and earlier sold in Japan. Color imageCLASS MF750C Series/Color imageCLASS X MF1333C firmware v03.07 and earlier sold in US. i-SENSYS MF754Cdw/C1333iF firmware v03.07 and earlier sold in Europe.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Canon | I-Sensys Mf754Cdw Firmware | <= 03.07 |
| Canon | I-Sensys Mf754Cdw | - |
| Canon | I-Sensys X C1333If Firmware | <= 03.07 |
| Canon | I-Sensys X C1333If | - |
| Canon | Mf755Cdw Firmware | <= 03.07 |
| Canon | Mf755Cdw | - |
| Canon | Mf753Cdw Firmware | <= 03.07 |
| Canon | Mf753Cdw | - |
| Canon | Mf751Cdw Firmware | <= 03.07 |
| Canon | Mf751Cdw | - |
| Canon | Mf1333C Firmware | <= 03.07 |
| Canon | Mf1333C | - |
| Canon | Lbp1333C Firmware | <= 03.07 |
| Canon | Lbp1333C | - |
Related Weaknesses (CWE)
References
- https://canon.jp/support/support-info/240205vulnerability-responseVendor Advisory
- https://psirt.canon/advisory-information/cp2024-001/Vendor Advisory
- https://www.canon-europe.com/support/product-security-latest-news/Vendor Advisory
- https://www.usa.canon.com/support/canon-product-advisories/Service-Notice-RegardVendor Advisory
- https://canon.jp/support/support-info/240205vulnerability-responseVendor Advisory
- https://psirt.canon/advisory-information/cp2024-001/Vendor Advisory
- https://www.canon-europe.com/support/product-security-latest-news/Vendor Advisory
- https://www.usa.canon.com/support/canon-product-advisories/Service-Notice-RegardVendor Advisory
FAQ
What is CVE-2024-0244?
CVE-2024-0244 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Buffer overflow in CPCA PCFAX number process of Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsiv...
How severe is CVE-2024-0244?
CVE-2024-0244 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2024-0244?
Check the references section above for vendor advisories and patch information. Affected products include: Canon I-Sensys Mf754Cdw Firmware, Canon I-Sensys Mf754Cdw, Canon I-Sensys X C1333If Firmware, Canon I-Sensys X C1333If, Canon Mf755Cdw Firmware.