Buffer overflow in XPS data font processing of Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code. *: Satera MF656Cdw/Satera MF654Cdw firmware v05.04 and earlier sold in Japan. Color imageCLASS MF656Cdw/Color imageCLASS MF654Cdw/Color imageCLASS MF653Cdw/Color imageCLASS MF652Cdw/Color imageCLASS LBP633Cdw/Color imageCLASS LBP632Cdw firmware v05.04 and earlier sold in US. i-SENSYS MF657Cdw/i-SENSYS MF655Cdw/i-SENSYS MF651Cdw/i-SENSYS LBP633Cdw/i-SENSYS LBP631Cdw firmware v05.04 and earlier sold in Europe.
References
Configurations
Configuration 1 (hide)
| AND |
|
Configuration 2 (hide)
| AND |
|
Configuration 3 (hide)
| AND |
|
Configuration 4 (hide)
| AND |
|
Configuration 5 (hide)
| AND |
|
Configuration 6 (hide)
| AND |
|
Configuration 7 (hide)
| AND |
|
Configuration 8 (hide)
| AND |
|
Configuration 9 (hide)
| AND |
|
Configuration 10 (hide)
| AND |
|
Configuration 11 (hide)
| AND |
|
Configuration 12 (hide)
| AND |
|
Configuration 13 (hide)
| AND |
|
Configuration 14 (hide)
| AND |
|
Configuration 15 (hide)
| AND |
|
Configuration 16 (hide)
| AND |
|
Configuration 17 (hide)
| AND |
|
Configuration 18 (hide)
| AND |
|
Configuration 19 (hide)
| AND |
|
Configuration 20 (hide)
| AND |
|
Configuration 21 (hide)
| AND |
|
Configuration 22 (hide)
| AND |
|
History
26 Jan 2026, 15:08
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://canon.jp/support/support-info/250127vulnerability-response - Vendor Advisory | |
| References | () https://psirt.canon/advisory-information/cp2025-001/ - Vendor Advisory | |
| References | () https://www.canon-europe.com/support/product-security/#news - Vendor Advisory | |
| References | () https://www.usa.canon.com/support/canon-product-advisories/service-notice-regarding-vulnerability-measure-against-buffer-overflow-for-laser-printers-and-small-office-multifunctional-printers - Vendor Advisory | |
| First Time |
Canon lbp237dw
Canon mf455dw Canon lbp1238 Ii Canon lbp1238 Ii Firmware Canon mf653cdw Firmware Canon mf1440 Canon lbp247dw Canon lbp633cdw Firmware Canon mf653cdw Canon lbp632cdw Firmware Canon lbp236dw Canon mf451dw Canon mf453dw Firmware Canon lbp246dw Firmware Canon mf462dw Firmware Canon mf1238 Ii Canon lbp633cdw Canon lbp1440 Firmware Canon mf1643if Ii Canon mf1440 Firmware Canon lbp236dw Firmware Canon mf652cw Firmware Canon lbp1440 Canon mf1643i Ii Firmware Canon mf1238 Ii Firmware Canon lbp237dw Firmware Canon lbp246dw Canon mf654cdw Firmware Canon mf465dw Canon mf1643if Ii Firmware Canon lbp632cdw Canon mf1643i Ii Canon mf453dw Canon lbp247dw Firmware Canon mf462dw Canon mf452dw Canon mf452dw Firmware Canon mf465dw Firmware Canon mf455dw Firmware Canon mf654cdw Canon mf652cw Canon mf656cdw Firmware Canon Canon mf656cdw Canon mf451dw Firmware |
|
| CPE | cpe:2.3:o:canon:lbp237dw_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:canon:lbp246dw:-:*:*:*:*:*:*:* cpe:2.3:o:canon:mf451dw_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:canon:mf656cdw:-:*:*:*:*:*:*:* cpe:2.3:o:canon:lbp247dw_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:canon:mf451dw:-:*:*:*:*:*:*:* cpe:2.3:o:canon:mf1440_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:canon:mf654cdw:-:*:*:*:*:*:*:* cpe:2.3:h:canon:mf1643if_ii:-:*:*:*:*:*:*:* cpe:2.3:o:canon:lbp633cdw_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:canon:mf462dw:-:*:*:*:*:*:*:* cpe:2.3:o:canon:lbp1440_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:canon:mf455dw:-:*:*:*:*:*:*:* cpe:2.3:o:canon:mf465dw_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:canon:mf453dw_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:canon:lbp246dw_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:canon:lbp632cdw_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:canon:mf1238_ii:-:*:*:*:*:*:*:* cpe:2.3:o:canon:lbp236dw_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:canon:lbp1238_ii_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:canon:mf652cw_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:canon:lbp632cdw:-:*:*:*:*:*:*:* cpe:2.3:o:canon:mf656cdw_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:canon:mf1643if_ii_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:canon:mf453dw:-:*:*:*:*:*:*:* cpe:2.3:h:canon:mf653cdw:-:*:*:*:*:*:*:* cpe:2.3:h:canon:lbp1238_ii:-:*:*:*:*:*:*:* cpe:2.3:o:canon:mf654cdw_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:canon:mf653cdw_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:canon:mf465dw:-:*:*:*:*:*:*:* cpe:2.3:h:canon:mf1440:-:*:*:*:*:*:*:* cpe:2.3:o:canon:mf1643i_ii_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:canon:mf1643i_ii:-:*:*:*:*:*:*:* cpe:2.3:h:canon:mf652cw:-:*:*:*:*:*:*:* cpe:2.3:o:canon:mf1238_ii_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:canon:mf462dw_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:canon:lbp247dw:-:*:*:*:*:*:*:* cpe:2.3:o:canon:mf452dw_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:canon:lbp236dw:-:*:*:*:*:*:*:* cpe:2.3:h:canon:lbp633cdw:-:*:*:*:*:*:*:* cpe:2.3:h:canon:mf452dw:-:*:*:*:*:*:*:* cpe:2.3:o:canon:mf455dw_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:canon:lbp237dw:-:*:*:*:*:*:*:* cpe:2.3:h:canon:lbp1440:-:*:*:*:*:*:*:* |
|
| Summary |
|
28 Jan 2025, 01:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-01-28 01:15
Updated : 2026-01-26 15:08
NVD link : CVE-2024-12649
Mitre link : CVE-2024-12649
CVE.ORG link : CVE-2024-12649
JSON object : View
Products Affected
canon
- mf455dw_firmware
- lbp632cdw_firmware
- mf1238_ii
- mf656cdw_firmware
- lbp237dw_firmware
- mf453dw
- mf1643i_ii
- mf1643if_ii_firmware
- lbp247dw_firmware
- mf452dw
- lbp237dw
- mf465dw
- mf1440
- mf654cdw
- mf654cdw_firmware
- lbp633cdw_firmware
- mf453dw_firmware
- lbp246dw
- mf652cw
- mf1440_firmware
- lbp247dw
- mf451dw
- mf465dw_firmware
- mf653cdw
- mf1643i_ii_firmware
- mf462dw_firmware
- mf462dw
- mf452dw_firmware
- mf1643if_ii
- lbp1440_firmware
- mf656cdw
- mf1238_ii_firmware
- lbp236dw_firmware
- lbp1238_ii_firmware
- lbp246dw_firmware
- mf455dw
- lbp236dw
- mf451dw_firmware
- lbp632cdw
- lbp1238_ii
- lbp1440
- mf652cw_firmware
- lbp633cdw
- mf653cdw_firmware
CWE
CWE-787
Out-of-bounds Write
