CVE-2024-45320

MEDIUM

DocuPrint CP225w <= 01.22.01 and CM225fw <= 01.10.01 - Out-of-bounds Write via Crafted Printer Job File

Title source: llm
STIX 2.1

Description

Out-of-bounds write vulnerability exists in DocuPrint CP225w 01.22.01 and earlier, DocuPrint CP228w 01.22.01 and earlier, DocuPrint CM225fw 01.10.01 and earlier, and DocuPrint CM228fw 01.10.01 and earlier. If an affected MFP processes a specially crafted printer job file, a denial-of-service (DoS) condition may occur.

References (2)

Core 2

Scores

CVSS v3 6.5
EPSS 0.0023
EPSS Percentile 13.4%
Attack Vector ADJACENT_NETWORK
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-787
Status published
Products (4)
FUJIFILM Business Innovation Corp./DocuPrint CM225fw 01.10.01 and earlier
FUJIFILM Business Innovation Corp./DocuPrint CM228fw 01.10.01 and earlier
FUJIFILM Business Innovation Corp./DocuPrint CP225w 01.22.01 and earlier
FUJIFILM Business Innovation Corp./DocuPrint CP228w 01.22.01 and earlier
Published Feb 18, 2025
Tracked Since Feb 18, 2026