CVE-2024-0244

Description

Buffer overflow in CPCA PCFAX number process of Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code.*:Satera MF750C Series firmware v03.07 and earlier sold in Japan. Color imageCLASS MF750C Series/Color imageCLASS X MF1333C firmware v03.07 and earlier sold in US. i-SENSYS MF754Cdw/C1333iF firmware v03.07 and earlier sold in Europe.

Category

9.8
CVSS
Severity: Critical
CVSS 3.1 •
EPSS 0.33%
Vendor Advisory psirt.canon Vendor Advisory canon.jp Vendor Advisory canon.com Vendor Advisory canon-europe.com
Affected: Canon Inc. Satera MF750C Series
Affected: Canon Inc. Color imageCLASS MF750C Series
Affected: Canon Inc. Color imageCLASS X MF1333C
Affected: Canon Inc. i-SENSYS MF754Cdw
Affected: Canon Inc. C1333iF
Published at:
Updated at:

References

Frequently Asked Questions

What is the severity of CVE-2024-0244?
CVE-2024-0244 has been scored as a critical severity vulnerability.
How to fix CVE-2024-0244?
To fix CVE-2024-0244, make sure you are using an up-to-date version of the affected component(s) by checking the vendor release notes. As for now, there are no other specific guidelines available.
Is CVE-2024-0244 being actively exploited in the wild?
As for now, there are no information to confirm that CVE-2024-0244 is being actively exploited. According to its EPSS score, there is a ~0% probability that this vulnerability will be exploited by malicious actors in the next 30 days.
What software or system is affected by CVE-2024-0244?
CVE-2024-0244 affects Canon Inc. Satera MF750C Series, Canon Inc. Color imageCLASS MF750C Series, Canon Inc. Color imageCLASS X MF1333C, Canon Inc. i-SENSYS MF754Cdw, Canon Inc. C1333iF.
This platform uses data from the NIST NVD, MITRE CVE, MITRE CWE, First.org and CISA KEV but is not endorsed or certified by these entities. CVE is a registred trademark of the MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. CWE is a registred trademark of the MITRE Corporation and the authoritative source of CWE content is MITRE's CWE web site.
© 2025 Under My Watch. All Rights Reserved.