CVE-2024-12649
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Jan 28, 2025
CWE ID 787
Summary
CVE-2024-12649 is a buffer overflow vulnerability affecting Small Office Multifunction Printers and Laser Printers from various brands, including Satera and i-SENSYS. Affected models include MF656Cdw, MF654Cdw, MF653Cdw, MF652Cdw, LBP633Cdw, and LBP631Cdw. The issue lies in XPS data font processing and may cause the printer to become unresponsive or enable an attacker on the network segment to execute arbitrary code. The vulnerability exists in firmware v05.04 and earlier, and was sold in Japan, the US, and Europe.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share