CVE-2025-9903
Unknown Unknown - Not Provided
BaseFortify

Publication date: 2025-09-29

Last updated on: 2026-03-16

Assigner: Canon Inc.

Description
Out-of-bounds write vulnerabilities in print processing of Generic Plus PCL6 Printer Driver / Generic Plus UFR II Printer Driver / Generic Plus LIPS4 Printer Driver / Generic Plus LIPSLX Printer Driver / Generic Plus PS Printer Driver / UFRII LT Printer Driver / CARPS2 Printer Driver / Generic FAX Driver / LIPS4 Printer Driver / LIPSLX Printer Driver / UFR II Printer Driver / PS Printer Driver / PCL6 Printer Driver
CVSS Scores
EPSS Scores
Probability:
Percentile:
Meta Information
Published
2025-09-29
Last Modified
2026-03-16
Generated
2026-06-16
AI Q&A
2025-09-29
EPSS Evaluated
2026-06-14
NVD
Affected Vendors & Products
Showing 4 associated CPEs
Vendor Product Version / Range
canon generic_plus_lips4_printer_driver 3.31
canon generic_plus_lipslx_printer_driver 3.31
canon generic_plus_ps3_printer_driver 3.31
canon generic_plus_pcl6_printer_driver 3.31
Helpful Resources
Exploitability
CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-787 The product writes data past the end, or before the beginning, of the intended buffer.
Attack-Flow Graph
AI Quick Actions
Instant insights powered by AI
Executive Summary

This vulnerability involves out-of-bounds write issues in the print processing components of several Generic Plus printer drivers, including PCL6, UFR II, LIPS4, LIPSLX, and PS printer drivers. An out-of-bounds write means that the software writes data outside the allocated memory buffer, which can lead to unexpected behavior or security risks.

Impact Analysis

The vulnerability can potentially allow an attacker to cause integrity and availability impacts by exploiting the out-of-bounds write in the printer drivers. This could lead to corrupted print jobs, denial of service, or other unintended behavior when processing print data. The CVSS score indicates a moderate severity with possible impacts on integrity and availability.

Chat Assistant
Ask questions about this CVE
Hi! I’m here to help you understand CVE-2025-9903. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70
EPSS Chart