CVE-2024-2184

Buffer overflow in identifier field of WSD probe request process of Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code.*:Satera MF740C Series/Satera MF640C Series/Satera LBP660C Series/Satera LBP620C Series firmware v12.07 and earlier, and Satera MF750C Series/Satera LBP670C Series firmware v03.09 and earlier sold in Japan.Color imageCLASS MF740C Series/Color imageCLASS MF640C Series/Color imageCLASS X MF1127C/Color imageCLASS LBP664Cdw/Color imageCLASS LBP622Cdw/Color imageCLASS X LBP1127C firmware v12.07 and earlier, and Color imageCLASS MF750C Series/Color imageCLASS X MF1333C/Color imageCLASS LBP674Cdw/Color imageCLASS X LBP1333C firmware v03.09 and earlier sold in US.i-SENSYS MF740C Series/i-SENSYS MF640C Series/C1127i Series/i-SENSYS LBP660C Series/i-SENSYS LBP620C Series/C1127P firmware v12.07 and earlier, and i-SENSYS MF750C Series/C1333i Series/i-SENSYS LBP673Cdw/C1333P firmware v03.09 and earlier sold in Europe.
Configurations

No configuration.

History

21 Nov 2024, 09:09

Type Values Removed Values Added
References () https://psirt.canon/advisory-information/cp2024-002/ - () https://psirt.canon/advisory-information/cp2024-002/ -
Summary
  • (es) Desbordamiento de búfer en el campo identificador del proceso de solicitud de sonda WSD de impresoras multifunción e impresoras láser para pequeñas oficinas (*), lo que puede permitir a un atacante en el segmento de red provocar que el producto afectado no responda o ejecutar código arbitrario.*:Satera MF740C Series/Satera Serie MF640C/Serie Satera LBP660C/Serie Satera LBP620C v12.07 y anteriores, y firmware Serie Satera MF750C/Serie Satera LBP670C v03.09 y anteriores vendidos en Japón. Serie Color imageCLASS MF740C/Serie Color imageCLASS MF640C/Color imageCLASS X MF1127C/ Color imageCLASS LBP664Cdw/Color imageCLASS LBP622Cdw/Color imageCLASS X LBP1127C firmware v12.07 y anteriores, y Color imageCLASS MF750C Series/Color imageCLASS X MF1333C/Color imageCLASS LBP674Cdw/Color imageCLASS X LBP1333C firmware v03.09 y anteriores vendidos en EE. UU. SENSYS MF740C Series/i-SENSYS MF640C Series/C1127i Series/i-SENSYS LBP660C Series/i-SENSYS LBP620C Series/C1127P firmware v12.07 y anteriores, y i-SENSYS MF750C Series/C1333i Series/i-SENSYS LBP673Cdw/C1333P firmware v03.09 y anteriores vendidos en Europa.

11 Mar 2024, 01:32

Type Values Removed Values Added
New CVE

Information

Published : 2024-03-11 01:15

Updated : 2024-11-21 09:09


NVD link : CVE-2024-2184

Mitre link : CVE-2024-2184

CVE.ORG link : CVE-2024-2184


JSON object : View

Products Affected

No product.

CWE
CWE-787

Out-of-bounds Write