canon.jpVendor advisory
https://canon.jp/support/support-info/250328vulnerability-response CVE-2025-1268
CRITICAL
Record summary
CVE-2025-1268 has a selected CVSS score of 9.4 (critical).
Description
Out-of-bounds vulnerability in EMF Recode processing of Generic Plus PCL6 Printer Driver / Generic Plus UFR II Printer Driver / Generic Plus LIPS4 Printer Driver / Generic Plus LIPSLX Printer Driver / Generic Plus PS Printer Driver / Generic FAX Printer Driver / UFRII LT Printer Driver / CARPS2 Printer Driver / PDF Driver / LIPS4 Printer Driver / LIPSLX Printer Driver / UFR II Printer Driver / PS Printer Driver / PCL6 Printer Driver
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationNone
AutomatableYes
Technical impactTotal
CISA Coordinator · SSVC 2.0.3 · Evaluated Mar 31, 2025 · Source: CVE List
Affected products and versions
Showing 12 of 14| Product | Source | Version range | Status |
|---|---|---|---|
CARPS2 Printer DriverBrowse Canon Inc. / CARPS2 Printer Driver | CVE List | 31.01 and earlier | affected |
Generic FAX Printer DriverBrowse Canon Inc. / Generic FAX Printer Driver | CVE List | 10.65 and earlier | affected |
Generic Plus LIPS4 Printer DriverBrowse Canon Inc. / Generic Plus LIPS4 Printer Driver | CVE List | 3.12 and earlier | affected |
Generic Plus LIPSLX Printer DriverBrowse Canon Inc. / Generic Plus LIPSLX Printer Driver | CVE List | 3.12 and earlier | affected |
Generic Plus PCL6 Printer DriverBrowse Canon Inc. / Generic Plus PCL6 Printer Driver | CVE List | 3.12 and earlier | affected |
Generic Plus PS Printer DriverBrowse Canon Inc. / Generic Plus PS Printer Driver | CVE List | 3.12 and earlier | affected |
Generic Plus UFR II Printer DriverBrowse Canon Inc. / Generic Plus UFR II Printer Driver | CVE List | 3.12 and earlier | affected |
LIPS4 Printer DriverBrowse Canon Inc. / LIPS4 Printer Driver | CVE List | 15.00 and earlier | affected |
LIPSLX Printer DriverBrowse Canon Inc. / LIPSLX Printer Driver | CVE List | 15.00 and earlier | affected |
PCL6 Printer DriverBrowse Canon Inc. / PCL6 Printer Driver | CVE List | 15.00 and earlier | affected |
PDF DriverBrowse Canon Inc. / PDF Driver | CVE List | 1.0.5.0 and earlier | affected |
PS Printer DriverBrowse Canon Inc. / PS Printer Driver | CVE List | 15.00 and earlier | affected |
References
5nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2025-1268 psirt.canonVendor advisory
https://psirt.canon/advisory-information/cp2025-003 canon-europe.comVendor advisory
https://www.canon-europe.com/support/product-security usa.canon.comVendor advisory
https://www.usa.canon.com/about-us/to-our-customers/service-notice-vulnerability-remediation-for-certain-printer-drivers-for-production-printers-office-small-office-multifunction-printers-and-laser-printers