Buffer overflow in RICOH COMPANY, LTD. products - CVE-2019-14308
Published: September 16, 2019
SP C252DN
SP C250DN
SP C252SF
SP C250SF
Detailed vulnerability description
The vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to a boundary error when parsing LPD packets. A remote attacker can send a specially crafted requests to the LPD service, trigger memory corruption and cause a denial of service condition or execute arbitrary code on the target system.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.