cve/2024/CVE-2024-12648.md
2025-09-29 21:09:30 +02:00

30 lines
2.3 KiB
Markdown

### [CVE-2024-12648](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-12648)
![](https://img.shields.io/static/v1?label=Product&message=Color%20imageCLASS%20LBP632Cdw&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=Color%20imageCLASS%20LBP633Cdw&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=Color%20imageCLASS%20MF652Cdw&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=Color%20imageCLASS%20MF653Cdw&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=Color%20imageCLASS%20MF654Cdw&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=Color%20imageCLASS%20MF656Cdw&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=Satera%20MF654Cdw&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=Satera%20MF656Cdw&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=i-SENSYS%20LBP631Cdw&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=i-SENSYS%20LBP633Cdw&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=i-SENSYS%20MF651Cdw&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=i-SENSYS%20MF655Cdw&color=blue)
![](https://img.shields.io/static/v1?label=Product&message=i-SENSYS%20MF657Cdw&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=05.04%20and%20earlier%20&color=brightgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-787%3A%20Out-of-bounds%20Write&color=brightgreen)
### Description
Buffer overflow in TIFF data EXIF tag processing of Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code. *: Satera MF656Cdw/Satera MF654Cdw firmware v05.04 and earlier sold in Japan. Color imageCLASS MF656Cdw/Color imageCLASS MF654Cdw/Color imageCLASS MF653Cdw/Color imageCLASS MF652Cdw/Color imageCLASS LBP633Cdw/Color imageCLASS LBP632Cdw firmware v05.04 and earlier sold in US. i-SENSYS MF657Cdw/i-SENSYS MF655Cdw/i-SENSYS MF651Cdw/i-SENSYS LBP633Cdw/i-SENSYS LBP631Cdw firmware v05.04 and earlier sold in Europe.
### POC
#### Reference
- https://www.canon-europe.com/support/product-security/#news
#### Github
No PoCs found on GitHub currently.