ZDI-26-204: (Pwn2Own) Canon imageCLASS MF654Cdw XPS Parser Stack-based Buffer Overflow Remote Code Execution Vulnerability
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Canon imageCLASS MF654Cdw printers. Authentication is not required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 8.8. The following CVEs are assigned: CVE-2025-14232.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-26-204?
The severity of ZDI-26-204 is critical due to its potential for remote code execution.
How do I fix ZDI-26-204?
To fix ZDI-26-204, update your Canon imageCLASS MF654Cdw printer to the latest firmware provided by Canon.
Who is affected by ZDI-26-204?
ZDI-26-204 affects all installations of the Canon imageCLASS MF654Cdw printer.
Can ZDI-26-204 be exploited remotely?
Yes, ZDI-26-204 can be exploited remotely by network-adjacent attackers without authentication.
What type of vulnerability is ZDI-26-204?
ZDI-26-204 is a stack-based buffer overflow vulnerability that allows for arbitrary code execution.