9.3
/ 10
CRITICAL
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Description
Buffer overflow in XPS font parse processing on Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code. *: Satera LBP670C Series/Satera MF750C Series firmware v06.02 and earlier sold in Japan.Color imageCLASS LBP630C/Color imageCLASS MF650C Series/imageCLASS LBP230 Series/imageCLASS X LBP1238 II/imageCLASS MF450 Series/imageCLASS X MF1238 II/imageCLASS X MF1643i II/imageCLASS X MF1643iF II firmware v06.02 and earlier sold in US.i-SENSYS LBP630C Series/i-SENSYS MF650C Series/i-SENSYS LBP230 Series/1238P II/1238Pr II/i-SENSYS MF450 Series/i-SENSYS MF550 Series/1238i II/1238iF II/imageRUNNER 1643i II/imageRUNNER 1643iF II firmware v06.02 and earlier sold in Europe.
AI Analysis
Buffer overflow vulnerability in Canon printers and multifunction devices, allowing remote code execution or denial-of-service attacks.
Basic Information
ID
CVE-2025-14237
Source
Canon
Published
Jan 15, 2026 at 23:40
Affected Product
Vendor
Canon Inc.
Product
Satera LBP670C Series
Version
06.02 and earlier
Affected Versions
Canon Inc. Satera LBP670C Series 06.02 and earlier
Canon Inc. Satera MF750C Series 06.02 and earlier
Canon Inc. Color imageCLASS LBP630C 06.02 and earlier
Canon Inc. Color imageCLASS MF650C Series 06.02 and earlier
Canon Inc. imageCLASS LBP230 Series 06.02 and earlier
Canon Inc. imageCLASS X LBP1238 II 06.02 and earlier
Canon Inc. imageCLASS MF450 Series 06.02 and earlier
Canon Inc. imageCLASS X MF1238 II 06.02 and earlier
Canon Inc. imageCLASS X MF1643i II 06.02 and earlier
Canon Inc. imageCLASS X MF1643iF II 06.02 and earlier
Canon Inc. i-SENSYS LBP630C Series 06.02 and earlier
Canon Inc. i-SENSYS MF650C Series 06.02 and earlier
Canon Inc. i-SENSYS LBP230 Series 06.02 and earlier
Canon Inc. 1238P II 06.02 and earlier
Canon Inc. 1238Pr II 06.02 and earlier
Canon Inc. i-SENSYS MF450 Series 06.02 and earlier
Canon Inc. i-SENSYS MF550 Series 06.02 and earlier
Canon Inc. 1238i II 06.02 and earlier
Canon Inc. 1238iF II 06.02 and earlier
Canon Inc. imageRUNNER 1643i II 06.02 and earlier
Canon Inc. imageRUNNER 1643iF II 06.02 and earlier
Canon Inc. Satera MF750C Series 06.02 and earlier
Canon Inc. Color imageCLASS LBP630C 06.02 and earlier
Canon Inc. Color imageCLASS MF650C Series 06.02 and earlier
Canon Inc. imageCLASS LBP230 Series 06.02 and earlier
Canon Inc. imageCLASS X LBP1238 II 06.02 and earlier
Canon Inc. imageCLASS MF450 Series 06.02 and earlier
Canon Inc. imageCLASS X MF1238 II 06.02 and earlier
Canon Inc. imageCLASS X MF1643i II 06.02 and earlier
Canon Inc. imageCLASS X MF1643iF II 06.02 and earlier
Canon Inc. i-SENSYS LBP630C Series 06.02 and earlier
Canon Inc. i-SENSYS MF650C Series 06.02 and earlier
Canon Inc. i-SENSYS LBP230 Series 06.02 and earlier
Canon Inc. 1238P II 06.02 and earlier
Canon Inc. 1238Pr II 06.02 and earlier
Canon Inc. i-SENSYS MF450 Series 06.02 and earlier
Canon Inc. i-SENSYS MF550 Series 06.02 and earlier
Canon Inc. 1238i II 06.02 and earlier
Canon Inc. 1238iF II 06.02 and earlier
Canon Inc. imageRUNNER 1643i II 06.02 and earlier
Canon Inc. imageRUNNER 1643iF II 06.02 and earlier
CWE Classification
AI Assessment
AI Score
9.3 / 10
AI Severity
Critical
Vendor
Canon
Product
Canon Printers and Multifunction Devices
Version
06.02 and earlier
References
- psirt.canon /advisory-information/cp2026-001/
- canon.jp /support/support-info/260115vulnerability-response
- www.usa.canon.com /support/canon-product-advisories/Service-Notice-Regarding-Remediation-Measure-Against-Potential-Buffer-Overflow-Vulnerability-in-Laser-Printers-and-Small-Office-Multifunctional-Printers
- www.canon-europe.com /support/product-security/