CVE-2021-33945
Last modified
CVE-2021-33945 is a critical-severity vulnerability rated 9.8/10 on the CVSS scale. RICOH Printer series SP products 320DN, SP 325DNw, SP 320SN, SP 320SFN, SP 325SNw, SP 325SFNw, SP 330SN, Aficio SP 3500SF, SP 221S, SP 220SNw, SP 221SNw, SP 221SF, SP 220SFNw, SP 221SFNw v1.06 were discovered to contain a stack buffer overflow in the file /etc/wpa_supplicant.conf. This vulnerability allows attackers to cause a Denial of Service (DoS) via crafted overflow data.. EPSS estimates a 1.82% chance of exploitation in the next 30 days.
Description
RICOH Printer series SP products 320DN, SP 325DNw, SP 320SN, SP 320SFN, SP 325SNw, SP 325SFNw, SP 330SN, Aficio SP 3500SF, SP 221S, SP 220SNw, SP 221SNw, SP 221SF, SP 220SFNw, SP 221SFNw v1.06 were discovered to contain a stack buffer overflow in the file /etc/wpa_supplicant.conf. This vulnerability allows attackers to cause a Denial of Service (DoS) via crafted overflow data.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Ricoh | Sp 320dn Firmware | 1.06 |
| Ricoh | Sp 325dnw Firmware | 1.06 |
| Ricoh | Sp 320sn Firmware | 1.06 |
| Ricoh | Sp 320sfn Firmware | 1.06 |
| Ricoh | Sp 325snw Firmware | 1.06 |
| Ricoh | Sp 325sfnw Firmware | 1.06 |
| Ricoh | Sp 330sn Firmware | 1.06 |
| Ricoh | Aficio Sp 3500sf Firmware | 1.06 |
| Ricoh | Sp 221s Firmware | 1.06 |
| Ricoh | Sp 220snw Firmware | 1.06 |
| Ricoh | Sp 221snw Firmware | 1.06 |
| Ricoh | Sp 221sf Firmware | 1.06 |
| Ricoh | Sp 220sfnw Firmware | 1.06 |
| Ricoh | Sp 221sfnw Firmware | 1.06 |
| Ricoh | M C2000 Firmware | All versions |
| Ricoh | M C250fwb Firmware | All versions |
| Ricoh | M C250fw Firmware | All versions |
| Ricoh | Sp C260sfnw Firmware | All versions |
| Ricoh | Sp C262sfnw Firmware | All versions |
| Ricoh | Sp C261sfnw Firmware | All versions |
| Ricoh | Sp C250sf Firmware | All versions |
| Ricoh | Sp C252sf Firmware | All versions |
| Ricoh | P C300w Firmware | All versions |
| Ricoh | P C301w Firmware | All versions |
| Ricoh | Sp C260dnw Firmware | All versions |
| Ricoh | Sp C262dnw Firmware | All versions |
| Ricoh | Sp C261dnw Firmware | All versions |
| Ricoh | Sp C250dn Firmware | All versions |
| Ricoh | Sp C252dn Firmware | All versions |
| Ricoh | M 320 Firmware | All versions |
| Ricoh | M 320fb Firmware | All versions |
| Ricoh | M 320f Firmware | All versions |
| Ricoh | M 2700 Firmware | All versions |
| Ricoh | M 2701 Firmware | All versions |
| Ricoh | Sp 330sn Firmware | All versions |
| Ricoh | Sp 330sfn Firmware | All versions |
| Ricoh | Sp 3710sf Firmware | All versions |
| Ricoh | Sp 220snw Firmware | All versions |
| Ricoh | Sp 221snw Firmware | All versions |
| Ricoh | Sp 220sfnw Firmware | All versions |
| Ricoh | Sp 221sfnw Firmware | All versions |
| Ricoh | Sp 277snwx Firmware | All versions |
| Ricoh | Sp 277sfnwx Firmware | All versions |
| Ricoh | Sp 325snw Firmware | All versions |
| Ricoh | Sp 325sfnw Firmware | All versions |
| Ricoh | Sp 377snwx Firmware | All versions |
| Ricoh | Sp 377sfnwx Firmware | All versions |
| Ricoh | Sp 212sfnw Firmware | All versions |
| Ricoh | Sp 212sfw Firmware | All versions |
| Ricoh | Sp 212snw Firmware | All versions |
Showing 50 of 74 affected configurations. See NVD for the full list.
References
- https://github.com/Ainevsia/CVE-Request/tree/main/Ricoh/1Exploit, Third Party Advisory
- https://www.ricoh.com/info/2022/0228_1/Vendor Advisory
- https://github.com/Ainevsia/CVE-Request/tree/main/Ricoh/1Exploit, Third Party Advisory
- https://www.ricoh.com/info/2022/0228_1/Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2021-33945?
How severe is CVE-2021-33945?
How do I fix CVE-2021-33945?
Are you affected by CVE-2021-33945?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
