Description
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Canon imageCLASS MF644Cdw 10.02 printers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the implementation of the SLP protocol. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-15845.
Published: 2023-03-28
Score: 9.8 Critical
EPSS: 7.2% Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2022-29545 This vulnerability allows remote attackers to execute arbitrary code on affected installations of Canon imageCLASS MF644Cdw 10.02 printers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the implementation of the SLP protocol. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-15845.
History

Wed, 19 Feb 2025 16:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Subscriptions

Canon 1435i\+ 1435i\+ Firmware 1435if 1435if\+ 1435if\+ Firmware 1435if Firmware 1435p 1435p\+ 1435p\+ Firmware 1435p Firmware D1520 D1520 Firmware D1550 D1550 Firmware D1620 D1620 Firmware D1650 D1650 Firmware Ir1435i Ir1435i Firmware Ir1643i Ir1643i Firmware Ir1643if Ir1643if Firmware Lbp1127c Lbp1127c Firmware Lbp1238 Lbp1238 Firmware Lbp1238 Ii Lbp1238 Ii Firmware Lbp214dw Lbp214dw Firmware Lbp215dw Lbp215dw Firmware Lbp226dw Lbp226dw Firmware Lbp227dw Lbp227dw Firmware Lbp228dw Lbp228dw Firmware Lbp236dw Lbp236dw Firmware Lbp237dw Lbp237dw Firmware Lbp251dw Lbp251dw Firmware Lbp253dw Lbp253dw Firmware Lbp612cdw Lbp612cdw Firmware Lbp622cdw Lbp622cdw Firmware Lbp623cdw Lbp623cdw Firmware Lbp654cdw Lbp654cdw Firmware Lbp664cdw Lbp664cdw Firmware Mf1127c Mf1127c Firmware Mf1238 Mf1238 Firmware Mf1238 Ii Mf1238 Ii Firmware Mf1643i Ii Mf1643i Ii Firmware Mf1643if Ii Mf1643if Ii Firmware Mf414dw Mf414dw Firmware Mf416dw Mf416dw Firmware Mf419dw Mf419dw Firmware Mf424dw Mf424dw Firmware Mf426dw Mf426dw Firmware Mf429dw Mf429dw Firmware Mf445dw Mf445dw Firmware Mf448dw Mf448dw Firmware Mf449dw Mf449dw Firmware Mf451dw Mf451dw Firmware Mf452dw Mf452dw Firmware Mf453dw Mf453dw Firmware Mf455dw Mf455dw Firmware Mf515dw Mf515dw Firmware Mf525dw Mf525dw Firmware Mf543dw Mf543dw Firmware Mf6160dw Mf6160dw Firmware Mf6180dw Mf6180dw Firmware Mf624cdw Mf624cdw Firmware Mf628cdw Mf628cdw Firmware Mf632cdw Mf632cdw Firmware Mf634cdw Mf634cdw Firmware Mf641cw Mf641cw Firmware Mf642cdw Mf642cdw Firmware Mf644cdw Mf644cdw Firmware Mf726cdw Mf726cdw Firmware Mf729cdw Mf729cdw Firmware Mf731cdw Mf731cdw Firmware Mf733cdw Mf733cdw Firmware Mf735cdw Mf735cdw Firmware Mf741cdw Mf741cdw Firmware Mf743cdw Mf743cdw Firmware Mf745cdw Mf745cdw Firmware Mf746cdw Mf746cdw Firmware Mf810cdn Mf810cdn Firmware Mf820cdn Mf820cdn Firmware Mf8280cw Mf8280cw Firmware Mf8580cdw Mf8580cdw Firmware Wg7240 Wg7240 Firmware Wg7250 Wg7250 Firmware Wg7250f Wg7250f Firmware Wg7250z Wg7250z Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: zdi

Published:

Updated: 2025-02-19T15:39:58.261Z

Reserved: 2022-02-08T00:00:00.000Z

Link: CVE-2022-24673

cve-icon Vulnrichment

Updated: 2024-08-03T04:20:49.148Z

cve-icon NVD

Status : Modified

Published: 2023-03-28T19:15:10.793

Modified: 2024-11-21T06:50:50.387

Link: CVE-2022-24673

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses