CVE-2023-6231: Buffer Overflow

Published Feb 6, 2024
·
Updated

Buffer overflow in WSD probe request process of Office Multifunction Printers and Laser Printers() which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code.: Satera LBP670C Series/Satera MF750C Series firmware v03.07 and earlier sold in Japan. Color imageCLASS LBP674C/Color imageCLASS X LBP1333C/Color imageCLASS MF750C Series/Color imageCLASS X MF1333C Series firmware v03.07 and earlier sold in US. i-SENSYS LBP673Cdw/C1333P/i-SENSYS MF750C Series/C1333i Series firmware v03.07 and earlier sold in Europe.

Affected Software

58 affected components
All of the following
Canon Mf755cdw Firmware<=03.07
Canon Mf755cdw
All of the following
Canon Mf753cdw Firmware<=03.07
Canon Mf753cdw
All of the following
Canon Mf751cdw Firmware<=03.07
Canon Mf751cdw
All of the following
Canon Lbp674c Firmware<=03.07
Canon Lbp674c
All of the following
Canon Lbp672c Firmware<=03.07
Canon Lbp672c
All of the following
Canon Lbp671c Firmware<=03.07
Canon Lbp671c
All of the following
Canon Mf1238 Ii Firmware<=03.07
Canon Mf1238 Ii
All of the following
Canon Mf1333c Firmware<=03.07
Canon Mf1333c
All of the following
Canon Mf1643i Ii Firmware<=03.07
Canon Mf1643i Ii
All of the following
Canon Mf1643if Ii Firmware<=03.07
Canon Mf1643if Ii
All of the following
Canon Mf275dw Firmware<=03.07
Canon Mf275dw
All of the following
Canon Mf273dw Firmware<=03.07
Canon Mf273dw
All of the following
Canon Mf272dw Firmware<=03.07
Canon Mf272dw
All of the following
Canon Mf455dw Firmware<=03.07
Canon Mf455dw
All of the following
Canon Mf453dw Firmware<=03.07
Canon Mf453dw
All of the following
Canon Mf452dw Firmware<=03.07
Canon Mf452dw
All of the following
Canon Mf451dw Firmware<=03.07
Canon Mf451dw
All of the following
Canon Lbp122dw Firmware<=03.07
Canon Lbp122dw
All of the following
Canon Lbp1238 Ii Firmware<=03.07
Canon Lbp1238 Ii
All of the following
Canon Lbp1333c Firmware<=03.07
Canon Lbp1333c
All of the following
Canon Lbp237dw Firmware<=03.07
Canon Lbp237dw
All of the following
Canon Lbp236dw Firmware<=03.07
Canon Lbp236dw
All of the following
Canon Lbp674cdw Firmware<=03.07
Canon Lbp674cdw
All of the following
Canon I-sensys Mf754cdw Firmware<=03.07
Canon I-sensys Mf754cdw
All of the following
Canon I-sensys X C1333if Firmware<=03.07
Canon I-sensys X C1333if
All of the following
Canon I-sensys Lbp673cdw Firmware<=03.07
Canon I-sensys Lbp673cdw
All of the following
Canon I-sensys Mf752cdw Firmware<=03.07
Canon I-sensys Mf752cdw
All of the following
Canon I-sensys X C1333i Firmware<=03.07
Canon I-sensys X C1333i
All of the following
Canon I-sensys X C1333p Firmware<=03.07
Canon I-sensys X C1333p

Event History

Feb 6, 2024
CVE Published
via MITRE·12:22 AM
Data Sourced
via MITRE·12:22 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·01:15 AM
DescriptionSeverityWeakness

Frequently Asked Questions

1

What is the severity of CVE-2023-6231?

The severity of CVE-2023-6231 is considered high due to its potential to cause a buffer overflow that may lead to unresponsiveness or arbitrary code execution.

2

How do I fix CVE-2023-6231?

To fix CVE-2023-6231, update the affected Canon printer firmware to the latest version above 03.07.

3

Which devices are affected by CVE-2023-6231?

CVE-2023-6231 affects various Canon multifunction and laser printers, specifically those running firmware version 03.07 or earlier.

4

What are the potential impacts of CVE-2023-6231?

The potential impacts of CVE-2023-6231 include the device becoming unresponsive or an attacker being able to execute arbitrary code on the affected printers.

5

Is there any workaround available for CVE-2023-6231?

Currently, the recommended action to mitigate CVE-2023-6231 is to update the firmware; no specific workaround has been advised.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203