CVE-2023-0855

Buffer overflow in IPP number-up attribute process of Office / Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code. *:Satera LBP660C Series/LBP620C Series/MF740C Series/MF640C Series firmware Ver.11.04 and earlier sold in Japan. Color imageCLASS LBP660C Series/LBP 620C Series/X LBP1127C/MF740C Series/MF640C Series/X MF1127C firmware Ver.11.04 and earlier sold in US. i-SENSYS LBP660C Series/LBP620C Series/MF740C Series/MF640C Series, C1127P, C1127iF, C1127i firmware Ver.11.04 and earlier sold in Europe.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CanonCNA
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVEADP
---
---
CISA-ADPADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 39%
VendorProductVersion
canonmf642cdw_firmware
𝑥
≤ 11.04
canonmf644cdw_firmware
𝑥
≤ 11.04
canonmf741cdw_firmware
𝑥
≤ 11.04
canonmf743cdw_firmware
𝑥
≤ 11.04
canonmf745cdw_firmware
𝑥
≤ 11.04
canonlbp621c_firmware
𝑥
≤ 11.04
canonlbp622c_firmware
𝑥
≤ 11.04
canonlbp661c_firmware
𝑥
≤ 11.04
canonlbp662c_firmware
𝑥
≤ 11.04
canonlbp664c_firmware
𝑥
≤ 11.04
canonmf1127c_firmware
𝑥
≤ 11.04
canonmf262dw_ii_firmware
𝑥
≤ 11.04
canonmf264dw_ii_firmware
𝑥
≤ 11.04
canonmf267dw_ii_firmware
𝑥
≤ 11.04
canonmf269dw_ii_firmware
𝑥
≤ 11.04
canonmf269dw_vp_ii_firmware
𝑥
≤ 11.04
canonmf272dw_firmware
𝑥
≤ 11.04
canonmf273dw_firmware
𝑥
≤ 11.04
canonmf275dw_firmware
𝑥
≤ 11.04
canonmf641cw_firmware
𝑥
≤ 11.04
canonmf746cdw_firmware
𝑥
≤ 11.04
canonlbp122dw_firmware
𝑥
≤ 11.04
canonlbp1127c_firmware
𝑥
≤ 11.04
canonlbp622cdw_firmware
𝑥
≤ 11.04
canonlbp623cdw_firmware
𝑥
≤ 11.04
canonlbp664cdw_firmware
𝑥
≤ 11.04
canonimageprograf_tc-20_firmware
𝑥
≤ 11.04
canonimageprograf_tc-20m_firmware
𝑥
≤ 11.04
canonpixma_g3270_firmware
𝑥
≤ 11.04
canonpixma_g4270_firmware
𝑥
≤ 11.04
canonmaxify_gx3020_firmware
𝑥
≤ 11.04
canonmaxify_gx4020_firmware
𝑥
≤ 11.04
canoni-sensys_lbp621cw_firmware
𝑥
≤ 11.04
canoni-sensys_lbp623cdw_firmware
𝑥
≤ 11.04
canoni-sensys_lbp633cdw_firmware
𝑥
≤ 11.04
canoni-sensys_lbp664cx_firmware
𝑥
≤ 11.04
canoni-sensys_mf641cw_firmware
𝑥
≤ 11.04
canoni-sensys_mf643cdw_firmware
𝑥
≤ 11.04
canoni-sensys_mf645cx_firmware
𝑥
≤ 11.04
canoni-sensys_mf742cdw_firmware
𝑥
≤ 11.04
canoni-sensys_mf744cdw_firmware
𝑥
≤ 11.04
canoni-sensys_mf746cx_firmware
𝑥
≤ 11.04
canoni-sensys_x_c1127i_firmware
𝑥
≤ 11.04
canoni-sensys_x_c1127if_firmware
𝑥
≤ 11.04
canoni-sensys_x_c1127p_firmware
𝑥
≤ 11.04
𝑥
= Vulnerable software versions