Action not permitted
Modal body text goes here.
Modal Title
Modal Body
ghsa-xcjx-g6h3-96jc
Vulnerability from github
Buffer overflow in WebService Authentication processing of Small Office Multifunction Printers and Laser Printers() which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code. : Satera MF656Cdw/Satera MF654Cdw/Satera MF551dw/Satera MF457dw firmware v05.07 and earlier sold in Japan. Color imageCLASS MF656Cdw/Color imageCLASS MF654Cdw/Color imageCLASS MF653Cdw/Color imageCLASS MF652Cdw/Color imageCLASS LBP633Cdw/Color imageCLASS LBP632Cdw/imageCLASS MF455dw/imageCLASS MF453dw/imageCLASS MF452dw/imageCLASS MF451dw/imageCLASS LBP237dw/imageCLASS LBP236dw/imageCLASS X MF1238 II/imageCLASS X MF1643i II/imageCLASS X MF1643iF II/imageCLASS X LBP1238 II firmware v05.07 and earlier sold in US. i-SENSYS MF657Cdw/i-SENSYS MF655Cdw/i-SENSYS MF651Cdw/i-SENSYS LBP633Cdw/i-SENSYS LBP631Cdw/i-SENSYS MF553dw/i-SENSYS MF552dw/i-SENSYS MF455dw/i-SENSYS MF453dw/i-SENSYS LBP236dw/i-SENSYS LBP233dw/imageRUNNER 1643iF II/imageRUNNER 1643i II/i-SENSYS X 1238iF II/i-SENSYS X 1238i II/i-SENSYS X 1238P II/i-SENSYS X 1238Pr II firmware v05.07 and earlier sold in Europe.
{ "affected": [], "aliases": [ "CVE-2025-2146" ], "database_specific": { "cwe_ids": [ "CWE-787" ], "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-26T00:15:19Z", "severity": "CRITICAL" }, "details": "Buffer overflow in WebService Authentication processing of Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code. *: Satera MF656Cdw/Satera MF654Cdw/Satera MF551dw/Satera MF457dw firmware v05.07 and earlier sold in Japan. Color imageCLASS MF656Cdw/Color imageCLASS MF654Cdw/Color imageCLASS MF653Cdw/Color imageCLASS MF652Cdw/Color imageCLASS LBP633Cdw/Color imageCLASS LBP632Cdw/imageCLASS MF455dw/imageCLASS MF453dw/imageCLASS MF452dw/imageCLASS MF451dw/imageCLASS LBP237dw/imageCLASS LBP236dw/imageCLASS X MF1238 II/imageCLASS X MF1643i II/imageCLASS X MF1643iF II/imageCLASS X LBP1238 II firmware v05.07 and earlier sold in US. i-SENSYS MF657Cdw/i-SENSYS MF655Cdw/i-SENSYS MF651Cdw/i-SENSYS LBP633Cdw/i-SENSYS LBP631Cdw/i-SENSYS MF553dw/i-SENSYS MF552dw/i-SENSYS MF455dw/i-SENSYS MF453dw/i-SENSYS LBP236dw/i-SENSYS LBP233dw/imageRUNNER 1643iF II/imageRUNNER 1643i II/i-SENSYS X 1238iF II/i-SENSYS X 1238i II/i-SENSYS X 1238P II/i-SENSYS X 1238Pr II firmware v05.07 and earlier sold in Europe.", "id": "GHSA-xcjx-g6h3-96jc", "modified": "2025-05-26T00:30:33Z", "published": "2025-05-26T00:30:33Z", "references": [ { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2146" }, { "type": "WEB", "url": "https://canon.jp/support/support-info/250127vulnerability-response" }, { "type": "WEB", "url": "https://psirt.canon/advisory-information/cp2025-001" }, { "type": "WEB", "url": "https://www.canon-europe.com/support/product-security/#news" }, { "type": "WEB", "url": "https://www.usa.canon.com/support/canon-product-advisories/service-notice-regarding-vulnerability-measure-against-buffer-overflow-for-laser-printers-and-small-office-multifunctional-printers" } ], "schema_version": "1.4.0", "severity": [ { "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H", "type": "CVSS_V3" } ] }
CVE-2025-2146 (GCVE-0-2025-2146)
Vulnerability from cvelistv5
- CWE-787 - Out-of-bounds Write
Vendor | Product | Version | ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
► | Canon Inc. | Satera MF656Cdw |
Version: 05.07 and earlier |
|||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
|
{ "containers": { "adp": [ { "metrics": [ { "other": { "content": { "id": "CVE-2025-2146", "options": [ { "Exploitation": "none" }, { "Automatable": "yes" }, { "Technical Impact": "total" } ], "role": "CISA Coordinator", "timestamp": "2025-05-27T14:19:02.334772Z", "version": "2.0.3" }, "type": "ssvc" } } ], "providerMetadata": { "dateUpdated": "2025-05-27T14:20:02.153Z", "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0", "shortName": "CISA-ADP" }, "title": "CISA ADP Vulnrichment" } ], "cna": { "affected": [ { "product": "Satera MF656Cdw", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] }, { "product": "Satera MF654Cdw", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] }, { "product": "Satera MF551dw", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] }, { "product": "Satera MF457dw", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] }, { "product": "Color imageCLASS MF656Cdw", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] }, { "product": "Color imageCLASS MF654Cdw", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] }, { "product": "Color imageCLASS MF653Cdw", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] }, { "product": "Color imageCLASS MF652Cdw", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] }, { "product": "Color imageCLASS LBP633Cdw", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] }, { "product": "Color imageCLASS LBP632Cdw", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] }, { "product": "imageCLASS MF455dw", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] }, { "product": "imageCLASS MF453dw", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] }, { "product": "imageCLASS MF452dw", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] }, { "product": "imageCLASS MF451dw", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] }, { "product": "imageCLASS LBP237dw", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] }, { "product": "imageCLASS LBP236dw", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] }, { "product": "imageCLASS X MF1238 II", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] }, { "product": "imageCLASS X MF1643i II", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] }, { "product": "imageCLASS X MF1643iF II", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] }, { "product": "imageCLASS X LBP1238 II", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] }, { "product": "i-SENSYS MF657Cdw", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] }, { "product": "i-SENSYS MF655Cdw", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] }, { "product": "i-SENSYS MF651Cdw", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] }, { "product": "i-SENSYS LBP633Cdw", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] }, { "product": "i-SENSYS LBP631Cdw", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] }, { "product": "i-SENSYS MF553dw", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] }, { "product": "i-SENSYS MF552dw", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] }, { "product": "i-SENSYS MF455dw", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] }, { "product": "i-SENSYS MF453dw", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] }, { "product": "i-SENSYS LBP236dw", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] }, { "product": "i-SENSYS LBP233dw", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] }, { "product": "imageRUNNER 1643iF II", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] }, { "product": "imageRUNNER 1643i II", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] }, { "product": "i-SENSYS X 1238iF II", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] }, { "product": "i-SENSYS X 1238i II", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] }, { "product": "i-SENSYS X 1238P II", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] }, { "product": "i-SENSYS X 1238Pr II", "vendor": "Canon Inc.", "versions": [ { "status": "affected", "version": "05.07 and earlier" } ] } ], "descriptions": [ { "lang": "en", "supportingMedia": [ { "base64": false, "type": "text/html", "value": "\u003cp\u003eBuffer overflow in WebService Authentication processing of Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code. *: Satera MF656Cdw/Satera MF654Cdw/Satera MF551dw/Satera MF457dw firmware v05.07 and earlier sold in Japan. Color imageCLASS MF656Cdw/Color imageCLASS MF654Cdw/Color imageCLASS MF653Cdw/Color imageCLASS MF652Cdw/Color imageCLASS LBP633Cdw/Color imageCLASS LBP632Cdw/imageCLASS MF455dw/imageCLASS MF453dw/imageCLASS MF452dw/imageCLASS MF451dw/imageCLASS LBP237dw/imageCLASS LBP236dw/imageCLASS X MF1238 II/imageCLASS X MF1643i II/imageCLASS X MF1643iF II/imageCLASS X LBP1238 II firmware v05.07 and earlier sold in US. i-SENSYS MF657Cdw/i-SENSYS MF655Cdw/i-SENSYS MF651Cdw/i-SENSYS LBP633Cdw/i-SENSYS LBP631Cdw/i-SENSYS MF553dw/i-SENSYS MF552dw/i-SENSYS MF455dw/i-SENSYS MF453dw/i-SENSYS LBP236dw/i-SENSYS LBP233dw/imageRUNNER 1643iF II/imageRUNNER 1643i II/i-SENSYS X 1238iF II/i-SENSYS X 1238i II/i-SENSYS X 1238P II/i-SENSYS X 1238Pr II firmware v05.07 and earlier sold in Europe.\u003c/p\u003e" } ], "value": "Buffer overflow in WebService Authentication processing of Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code. *: Satera MF656Cdw/Satera MF654Cdw/Satera MF551dw/Satera MF457dw firmware v05.07 and earlier sold in Japan. Color imageCLASS MF656Cdw/Color imageCLASS MF654Cdw/Color imageCLASS MF653Cdw/Color imageCLASS MF652Cdw/Color imageCLASS LBP633Cdw/Color imageCLASS LBP632Cdw/imageCLASS MF455dw/imageCLASS MF453dw/imageCLASS MF452dw/imageCLASS MF451dw/imageCLASS LBP237dw/imageCLASS LBP236dw/imageCLASS X MF1238 II/imageCLASS X MF1643i II/imageCLASS X MF1643iF II/imageCLASS X LBP1238 II firmware v05.07 and earlier sold in US. i-SENSYS MF657Cdw/i-SENSYS MF655Cdw/i-SENSYS MF651Cdw/i-SENSYS LBP633Cdw/i-SENSYS LBP631Cdw/i-SENSYS MF553dw/i-SENSYS MF552dw/i-SENSYS MF455dw/i-SENSYS MF453dw/i-SENSYS LBP236dw/i-SENSYS LBP233dw/imageRUNNER 1643iF II/imageRUNNER 1643i II/i-SENSYS X 1238iF II/i-SENSYS X 1238i II/i-SENSYS X 1238P II/i-SENSYS X 1238Pr II firmware v05.07 and earlier sold in Europe." } ], "metrics": [ { "cvssV3_1": { "attackComplexity": "LOW", "attackVector": "NETWORK", "availabilityImpact": "HIGH", "baseScore": 9.8, "baseSeverity": "CRITICAL", "confidentialityImpact": "HIGH", "integrityImpact": "HIGH", "privilegesRequired": "NONE", "scope": "UNCHANGED", "userInteraction": "NONE", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H", "version": "3.1" }, "format": "CVSS", "scenarios": [ { "lang": "en", "value": "GENERAL" } ] } ], "problemTypes": [ { "descriptions": [ { "cweId": "CWE-787", "description": "CWE-787: Out-of-bounds Write", "lang": "en", "type": "CWE" } ] } ], "providerMetadata": { "dateUpdated": "2025-05-25T23:36:36.024Z", "orgId": "f98c90f0-e9bd-4fa7-911b-51993f3571fd", "shortName": "Canon" }, "references": [ { "tags": [ "vendor-advisory" ], "url": "https://psirt.canon/advisory-information/cp2025-001/" }, { "tags": [ "vendor-advisory" ], "url": "https://canon.jp/support/support-info/250127vulnerability-response" }, { "tags": [ "vendor-advisory" ], "url": "https://www.usa.canon.com/support/canon-product-advisories/service-notice-regarding-vulnerability-measure-against-buffer-overflow-for-laser-printers-and-small-office-multifunctional-printers" }, { "tags": [ "vendor-advisory" ], "url": "https://www.canon-europe.com/support/product-security/#news" } ] } }, "cveMetadata": { "assignerOrgId": "f98c90f0-e9bd-4fa7-911b-51993f3571fd", "assignerShortName": "Canon", "cveId": "CVE-2025-2146", "datePublished": "2025-05-25T23:36:36.024Z", "dateReserved": "2025-03-10T04:32:48.049Z", "dateUpdated": "2025-05-27T14:20:02.153Z", "state": "PUBLISHED" }, "dataType": "CVE_RECORD", "dataVersion": "5.1" }
Sightings
Author | Source | Type | Date |
---|
Nomenclature
- Seen: The vulnerability was mentioned, discussed, or seen somewhere by the user.
- Confirmed: The vulnerability is confirmed from an analyst perspective.
- Exploited: This vulnerability was exploited and seen by the user reporting the sighting.
- Patched: This vulnerability was successfully patched by the user reporting the sighting.
- Not exploited: This vulnerability was not exploited or seen by the user reporting the sighting.
- Not confirmed: The user expresses doubt about the veracity of the vulnerability.
- Not patched: This vulnerability was not successfully patched by the user reporting the sighting.