CVE-2025-14232: Buffer Overflow

Published Jan 15, 2026
·
Updated

Buffer overflow in XML processing of XPS file in Small Office Multifunction Printers and Laser Printers() which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code. : Satera LBP670C Series/Satera MF750C Series firmware v06.02 and earlier sold in Japan.Color imageCLASS LBP630C/Color imageCLASS MF650C Series/imageCLASS LBP230 Series/imageCLASS X LBP1238 II/imageCLASS MF450 Series/imageCLASS X MF1238 II/imageCLASS X MF1643i II/imageCLASS X MF1643iF II firmware v06.02 and earlier sold in US.i-SENSYS LBP630C Series/i-SENSYS MF650C Series/i-SENSYS LBP230 Series/1238P II/1238Pr II/i-SENSYS MF450 Series/i-SENSYS MF550 Series/1238i II/1238iF II/imageRUNNER 1643i II/imageRUNNER 1643iF II firmware v06.02 and earlier sold in Europe.

Affected Software

53 affected components
Canon Satera LBP670C Series<=06.02
Canon Satera MF750C Series<=06.02
Canon Color imageCLASS LBP630C<=06.02
Canon Color imageCLASS MF650C Series<=06.02
Canon imageCLASS LBP230 Series<=06.02
Canon imageCLASS X LBP1238 II<=06.02
Canon imageCLASS MF450 Series<=06.02
Canon Imageclass X Mf1238 Ii<=06.02
Canon imageCLASS X MF1643i II<=06.02
Canon imageCLASS X MF1643iF II<=06.02
Canon i-SENSYS LBP630C Series<=06.02
Canon i-SENSYS MF650C Series<=06.02
Canon i-SENSYS LBP230 Series<=06.02
Canon 1238P II<=06.02
Canon 1238Pr II<=06.02
Canon i-SENSYS MF450 Series<=06.02
Canon i-SENSYS MF550 Series<=06.02
Canon 1238i II<=06.02
Canon 1238iF II<=06.02
Canon Imagerunner 1643i Ii<=06.02
Canon Imagerunner 1643if Ii<=06.02
All of the following
Canon Mf455dw Firmware<=06.02
Canon Mf455dw
All of the following
Canon Mf453dw Firmware<=06.02
Canon Mf453dw
All of the following
Canon Mf452dw Firmware<=06.02
Canon Mf452dw
All of the following
Canon Mf451dw Firmware<=06.02
Canon Mf451dw
All of the following
Canon Mf654cdw Firmware<=06.02
Canon Mf654cdw
All of the following
Canon Mf656cdw Firmware<=06.02
Canon Mf656cdw
All of the following
Canon Mf653cdw Firmware<=06.02
Canon Mf653cdw
All of the following
Canon Mf652cw Firmware<=06.02
Canon Mf652cdw
All of the following
Canon Mf1238 Ii Firmware<=06.02
Canon Mf1238 Ii
All of the following
Canon Mf1643if Ii Firmware<=06.02
Canon Mf1643if Ii
All of the following
Canon Mf1643i Ii Firmware<=06.02
Canon Mf1643i Ii
All of the following
Canon Lbp237dw Firmware<=06.02
Canon Lbp237dw
All of the following
Canon Lbp236dw Firmware<=06.02
Canon Lbp236dw
All of the following
Canon Lbp633cdw Firmware<=06.02
Canon Lbp633cdw
All of the following
Canon Lbp632cdw Firmware<=06.02
Canon Lbp632cdw
All of the following
Canon Lbp1238 Ii Firmware<=06.02
Canon Lbp1238 Ii

Event History

Jan 15, 2026
CVE Published
via MITRE·11:36 PM
Data Sourced
via MITRE·11:36 PM
DescriptionSeverityWeakness
Jan 16, 2026
Data Sourced
via NVD·12:16 AM
DescriptionSeverityWeaknessAffected Software

Frequently Asked Questions

1

What is the severity of CVE-2025-14232?

CVE-2025-14232 is considered a critical vulnerability due to its potential to allow attackers to execute arbitrary code or make the device unresponsive.

2

How do I fix CVE-2025-14232?

To fix CVE-2025-14232, ensure that you update your affected Canon printer firmware to the latest version provided by the manufacturer.

3

Which products are affected by CVE-2025-14232?

CVE-2025-14232 affects several Canon printer models, including the Satera LBP670C Series, Satera MF750C Series, and other models specified in the advisory.

4

What impact does CVE-2025-14232 have on my printer?

The impact of CVE-2025-14232 includes potential denial of service or unauthorized code execution on affected printer models.

5

Is there a known exploit for CVE-2025-14232?

As of now, there is no publicly disclosed exploit for CVE-2025-14232, but it is recommended to apply patches promptly to mitigate risks.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203