2024-02-06 03:00:29 +00:00
{
"id" : "CVE-2024-0244" ,
"sourceIdentifier" : "f98c90f0-e9bd-4fa7-911b-51993f3571fd" ,
"published" : "2024-02-06T01:15:09.300" ,
2024-12-08 03:06:42 +00:00
"lastModified" : "2024-11-21T08:46:08.340" ,
"vulnStatus" : "Modified" ,
2024-07-14 02:06:08 +00:00
"cveTags" : [ ] ,
2024-02-06 03:00:29 +00:00
"descriptions" : [
{
"lang" : "en" ,
"value" : "Buffer overflow in CPCA PCFAX number process of Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code.*:Satera MF750C Series firmware v03.07 and earlier sold in Japan. Color imageCLASS MF750C Series/Color imageCLASS X MF1333C firmware v03.07 and earlier sold in US. i-SENSYS MF754Cdw/C1333iF firmware v03.07 and earlier sold in Europe.\n\n"
2024-02-06 15:01:00 +00:00
} ,
{
"lang" : "es" ,
"value" : "Desbordamiento de b\u00fafer en el proceso de n\u00famero CPCA PCFAX de impresoras multifunci\u00f3n de oficina e impresoras l\u00e1ser (*), lo que puede permitir que un atacante en el segmento de red haga que el producto afectado no responda o ejecute c\u00f3digo arbitrario.*: Firmware de la serie Satera MF750C v03.07 y anteriores vendido en Jap\u00f3n. Serie Color imageCLASS MF750C/Firmware Color imageCLASS X MF1333C v03.07 y anteriores vendidos en EE. UU. Firmware i-SENSYS MF754Cdw/C1333iF v03.07 y anteriores vendidos en Europa."
2024-02-06 03:00:29 +00:00
}
] ,
"metrics" : {
"cvssMetricV31" : [
2024-02-13 21:00:28 +00:00
{
2024-12-08 03:06:42 +00:00
"source" : "f98c90f0-e9bd-4fa7-911b-51993f3571fd" ,
"type" : "Secondary" ,
2024-02-13 21:00:28 +00:00
"cvssData" : {
"version" : "3.1" ,
"vectorString" : "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" ,
2024-12-08 03:06:42 +00:00
"baseScore" : 9.8 ,
"baseSeverity" : "CRITICAL" ,
2024-02-13 21:00:28 +00:00
"attackVector" : "NETWORK" ,
"attackComplexity" : "LOW" ,
"privilegesRequired" : "NONE" ,
"userInteraction" : "NONE" ,
"scope" : "UNCHANGED" ,
"confidentialityImpact" : "HIGH" ,
"integrityImpact" : "HIGH" ,
2024-12-08 03:06:42 +00:00
"availabilityImpact" : "HIGH"
2024-02-13 21:00:28 +00:00
} ,
"exploitabilityScore" : 3.9 ,
"impactScore" : 5.9
} ,
2024-02-06 03:00:29 +00:00
{
2024-12-08 03:06:42 +00:00
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
2024-02-06 03:00:29 +00:00
"cvssData" : {
"version" : "3.1" ,
"vectorString" : "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" ,
2024-12-08 03:06:42 +00:00
"baseScore" : 9.8 ,
"baseSeverity" : "CRITICAL" ,
2024-02-06 03:00:29 +00:00
"attackVector" : "NETWORK" ,
"attackComplexity" : "LOW" ,
"privilegesRequired" : "NONE" ,
"userInteraction" : "NONE" ,
"scope" : "UNCHANGED" ,
"confidentialityImpact" : "HIGH" ,
"integrityImpact" : "HIGH" ,
2024-12-08 03:06:42 +00:00
"availabilityImpact" : "HIGH"
2024-02-06 03:00:29 +00:00
} ,
"exploitabilityScore" : 3.9 ,
"impactScore" : 5.9
}
]
} ,
"weaknesses" : [
2024-02-13 21:00:28 +00:00
{
2024-12-08 03:06:42 +00:00
"source" : "f98c90f0-e9bd-4fa7-911b-51993f3571fd" ,
"type" : "Secondary" ,
2024-02-13 21:00:28 +00:00
"description" : [
{
"lang" : "en" ,
"value" : "CWE-787"
}
]
} ,
2024-02-06 03:00:29 +00:00
{
2024-12-08 03:06:42 +00:00
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
2024-02-06 03:00:29 +00:00
"description" : [
{
"lang" : "en" ,
"value" : "CWE-787"
}
]
}
] ,
2024-02-13 21:00:28 +00:00
"configurations" : [
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
2024-12-08 03:06:42 +00:00
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:canon:i-sensys_mf754cdw_firmware:*:*:*:*:*:*:*:*" ,
"versionEndIncluding" : "03.07" ,
"matchCriteriaId" : "FCF73502-0D10-47D5-AE86-433B6F968EED"
2024-02-13 21:00:28 +00:00
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
2024-12-08 03:06:42 +00:00
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:canon:i-sensys_mf754cdw:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "2364E018-8831-4890-84C7-5A21090632FE"
2024-02-13 21:00:28 +00:00
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
2024-12-08 03:06:42 +00:00
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:canon:i-sensys_x_c1333if_firmware:*:*:*:*:*:*:*:*" ,
"versionEndIncluding" : "03.07" ,
"matchCriteriaId" : "653AD79A-4049-4737-B7E9-F4E04EF5D5D3"
2024-02-13 21:00:28 +00:00
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
2024-12-08 03:06:42 +00:00
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:canon:i-sensys_x_c1333if:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "1A49E0C3-5396-43D5-96D1-18CC21343692"
2024-02-13 21:00:28 +00:00
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
2024-12-08 03:06:42 +00:00
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:canon:mf755cdw_firmware:*:*:*:*:*:*:*:*" ,
"versionEndIncluding" : "03.07" ,
"matchCriteriaId" : "B687D449-54F5-4CD8-A568-25CFA173ED9F"
2024-02-13 21:00:28 +00:00
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
2024-12-08 03:06:42 +00:00
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:canon:mf755cdw:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "8DA70BF1-168D-4C48-8BFD-FC188AA980F6"
2024-02-13 21:00:28 +00:00
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
2024-12-08 03:06:42 +00:00
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:canon:mf753cdw_firmware:*:*:*:*:*:*:*:*" ,
"versionEndIncluding" : "03.07" ,
"matchCriteriaId" : "14329C7B-5E37-49E7-A184-DA8663180193"
2024-02-13 21:00:28 +00:00
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
2024-12-08 03:06:42 +00:00
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:canon:mf753cdw:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "16D08A08-7DF2-4A2A-AB1D-70691FDE2414"
2024-02-13 21:00:28 +00:00
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
2024-12-08 03:06:42 +00:00
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:canon:mf751cdw_firmware:*:*:*:*:*:*:*:*" ,
"versionEndIncluding" : "03.07" ,
"matchCriteriaId" : "C80D7DD5-0336-4DA2-AED5-8798DA90452E"
2024-02-13 21:00:28 +00:00
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
2024-12-08 03:06:42 +00:00
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:canon:mf751cdw:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "0143F7DE-A138-4432-906A-CCE977E7C568"
2024-02-13 21:00:28 +00:00
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
2024-12-08 03:06:42 +00:00
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:canon:mf1333c_firmware:*:*:*:*:*:*:*:*" ,
"versionEndIncluding" : "03.07" ,
"matchCriteriaId" : "CE8F0188-DC21-4E4C-A65D-BE396D2F985F"
2024-02-13 21:00:28 +00:00
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
2024-12-08 03:06:42 +00:00
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:canon:mf1333c:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "2CB95B57-DBBB-4399-9F9D-F8C50B34F97F"
2024-02-13 21:00:28 +00:00
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
2024-12-08 03:06:42 +00:00
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:canon:lbp1333c_firmware:*:*:*:*:*:*:*:*" ,
"versionEndIncluding" : "03.07" ,
"matchCriteriaId" : "2526FF3A-8073-48D6-80B7-C745FE831B10"
2024-02-13 21:00:28 +00:00
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
2024-12-08 03:06:42 +00:00
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:canon:lbp1333c:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "1565F93E-BD2C-406A-A189-2F9CD87C701C"
2024-02-13 21:00:28 +00:00
}
]
}
]
}
] ,
2024-02-06 03:00:29 +00:00
"references" : [
{
"url" : "https://canon.jp/support/support-info/240205vulnerability-response" ,
2024-02-13 21:00:28 +00:00
"source" : "f98c90f0-e9bd-4fa7-911b-51993f3571fd" ,
"tags" : [
"Vendor Advisory"
]
2024-02-06 03:00:29 +00:00
} ,
{
"url" : "https://psirt.canon/advisory-information/cp2024-001/" ,
2024-02-13 21:00:28 +00:00
"source" : "f98c90f0-e9bd-4fa7-911b-51993f3571fd" ,
"tags" : [
"Vendor Advisory"
]
2024-02-06 03:00:29 +00:00
} ,
{
"url" : "https://www.canon-europe.com/support/product-security-latest-news/" ,
2024-02-13 21:00:28 +00:00
"source" : "f98c90f0-e9bd-4fa7-911b-51993f3571fd" ,
"tags" : [
"Vendor Advisory"
]
2024-02-06 03:00:29 +00:00
} ,
{
"url" : "https://www.usa.canon.com/support/canon-product-advisories/Service-Notice-Regarding-Vulnerability-Measure-Against-Buffer-Overflow-for-Laser-Printers-and-Small-Office-Multifunctional-Printers" ,
2024-02-13 21:00:28 +00:00
"source" : "f98c90f0-e9bd-4fa7-911b-51993f3571fd" ,
"tags" : [
"Vendor Advisory"
]
2024-12-08 03:06:42 +00:00
} ,
{
"url" : "https://canon.jp/support/support-info/240205vulnerability-response" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Vendor Advisory"
]
} ,
{
"url" : "https://psirt.canon/advisory-information/cp2024-001/" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Vendor Advisory"
]
} ,
{
"url" : "https://www.canon-europe.com/support/product-security-latest-news/" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Vendor Advisory"
]
} ,
{
"url" : "https://www.usa.canon.com/support/canon-product-advisories/Service-Notice-Regarding-Vulnerability-Measure-Against-Buffer-Overflow-for-Laser-Printers-and-Small-Office-Multifunctional-Printers" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Vendor Advisory"
]
2024-02-06 03:00:29 +00:00
}
]
}