CVE-2022-24672
Last modified
CVE-2022-24672 is a high-severity vulnerability rated 8.8/10 on the CVSS scale. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Canon imageCLASS MF644Cdw 10.02 printers. Authentication is not required to exploit this vulnerability. EPSS estimates a 1.19% chance of exploitation in the next 30 days.
Description
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Canon imageCLASS MF644Cdw 10.02 printers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the CADM service. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the service account. Was ZDI-CAN-15802.
Metrics
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Canon | D1620 Firmware | All versions |
| Canon | D1650 Firmware | All versions |
| Canon | D1520 Firmware | All versions |
| Canon | D1550 Firmware | All versions |
| Canon | Mf1127c Firmware | All versions |
| Canon | Mf1238 Firmware | All versions |
| Canon | Mf1238 Ii Firmware | All versions |
| Canon | Mf1643i Ii Firmware | All versions |
| Canon | Mf1643if Ii Firmware | All versions |
| Canon | Mf414dw Firmware | All versions |
| Canon | Mf416dw Firmware | All versions |
| Canon | Mf419dw Firmware | All versions |
| Canon | Mf515dw Firmware | All versions |
| Canon | Mf424dw Firmware | All versions |
| Canon | Mf426dw Firmware | All versions |
| Canon | Mf429dw Firmware | All versions |
| Canon | Mf525dw Firmware | All versions |
| Canon | Mf445dw Firmware | All versions |
| Canon | Mf448dw Firmware | All versions |
| Canon | Mf449dw Firmware | All versions |
| Canon | Mf543dw Firmware | All versions |
| Canon | Mf451dw Firmware | All versions |
| Canon | Mf452dw Firmware | All versions |
| Canon | Mf453dw Firmware | All versions |
| Canon | Mf455dw Firmware | All versions |
| Canon | Mf6160dw Firmware | All versions |
| Canon | Mf6180dw Firmware | All versions |
| Canon | Mf624cdw Firmware | All versions |
| Canon | Mf628cdw Firmware | All versions |
| Canon | Mf632cdw Firmware | All versions |
| Canon | Mf634cdw Firmware | All versions |
| Canon | Mf641cw Firmware | All versions |
| Canon | Mf642cdw Firmware | All versions |
| Canon | Mf644cdw Firmware | All versions |
| Canon | Mf726cdw Firmware | All versions |
| Canon | Mf729cdw Firmware | All versions |
| Canon | Mf731cdw Firmware | All versions |
| Canon | Mf733cdw Firmware | All versions |
| Canon | Mf735cdw Firmware | All versions |
| Canon | Mf741cdw Firmware | All versions |
| Canon | Mf743cdw Firmware | All versions |
| Canon | Mf745cdw Firmware | All versions |
| Canon | Mf746cdw Firmware | All versions |
| Canon | Mf810cdn Firmware | All versions |
| Canon | Mf820cdn Firmware | All versions |
| Canon | Mf8280cw Firmware | All versions |
| Canon | Mf8580cdw Firmware | All versions |
| Canon | Lbp1127c Firmware | All versions |
| Canon | Lbp1238 Firmware | All versions |
| Canon | Lbp1238 Ii Firmware | All versions |
Showing 50 of 76 affected configurations. See NVD for the full list.
References
- https://www.zerodayinitiative.com/advisories/ZDI-22-514/Third Party Advisory, VDB Entry
- https://www.zerodayinitiative.com/advisories/ZDI-22-514/Third Party Advisory, VDB Entry
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2022-24672?
How severe is CVE-2022-24672?
How do I fix CVE-2022-24672?
Are you affected by CVE-2022-24672?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
