CVE Database
/

CVE-2025-9903

Back to search

CVE-2025-9903

Published: Sep 29, 2025

Modified: Mar 15, 2026

PUBLISHED

CVSS v3.1

5.9

MEDIUM

Description

Out-of-bounds write vulnerabilities in print processing of Generic Plus PCL6 Printer Driver / Generic Plus UFR II Printer Driver / Generic Plus LIPS4 Printer Driver / Generic Plus LIPSLX Printer Driver / Generic Plus PS Printer Driver / UFRII LT Printer Driver / CARPS2 Printer Driver / Generic FAX Driver / LIPS4 Printer Driver / LIPSLX Printer Driver / UFR II Printer Driver / PS Printer Driver / PCL6 Printer Driver

VendorProductVersions

Canon Inc.

Generic Plus PCL6 Printer Driver

affected
3.30 and earlier

Canon Inc.

Generic Plus UFR II Printer Driver

affected
3.30 and earlier

Canon Inc.

Generic Plus LIPS4 Printer Driver

affected
3.30 and earlier

Canon Inc.

Generic Plus LIPSLX Printer Driver

affected
3.30 and earlier

Canon Inc.

Generic Plus PS Printer Driver

affected
3.30 and earlier

Canon Inc.

UFRII LT Printer Driver

affected
31.05 and earlier

Canon Inc.

CARPS2 Printer Driver

affected
31.05 and earlier

Canon Inc.

Generic FAX Driver

affected
10.67 and earlier

Canon Inc.

LIPS4 Printer Driver

affected
15.00 and earlier

Canon Inc.

LIPSLX Printer Driver

affected
15.00 and earlier

Canon Inc.

UFR II Printer Driver

affected
15.00 and earlier

Canon Inc.

PS Printer Driver

affected
15.00 and earlier

Canon Inc.

PCL6 Printer Driver

affected
15.00 and earlier

Weaknesses (CWE)

CVSS v3.1 Details

CVSS v3.1 Vector

CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:L

Attack Vector

Network

Attack Complexity

High

Privileges Required

None

User Interaction

Required

Scope

Unchanged

Confidentiality

None

Integrity

High

Availability

Low

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now