# CVE-2025-14233

## Summary

- **CVE ID:** CVE-2025-14233
- **Severity:** CRITICAL
- **CVSS Score:** 9.8 (CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N)
- **CWE:** CWE-763
- **Published:** Jan 15, 2026
- **Last Modified:** Mar 12, 2026

## Description

Invalid free in CPCA file deletion processing on Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network segment to trigger the affected product being unresponsive or to execute arbitrary code. *: Satera LBP670C Series/Satera MF750C Series firmware v06.02 and earlier sold in Japan.Color imageCLASS LBP630C/Color imageCLASS MF650C Series/imageCLASS LBP230 Series/imageCLASS X LBP1238 II/imageCLASS MF450 Series/imageCLASS X MF1238 II/imageCLASS X MF1643i II/imageCLASS X MF1643iF II firmware v06.02 and earlier sold in US.i-SENSYS LBP630C Series/i-SENSYS MF650C Series/i-SENSYS LBP230 Series/1238P II/1238Pr II/i-SENSYS MF450 Series/i-SENSYS MF550 Series/1238i II/1238iF II/imageRUNNER 1643i II/imageRUNNER 1643iF II firmware v06.02 and earlier sold in Europe.

## Affected Products

- Canon Inc. — Satera LBP670C Series (06.02 and earlier)
- Canon Inc. — Satera MF750C Series (06.02 and earlier)
- Canon Inc. — Color imageCLASS LBP630C (06.02 and earlier)
- Canon Inc. — Color imageCLASS MF650C Series (06.02 and earlier)
- Canon Inc. — imageCLASS LBP230 Series (06.02 and earlier)
- Canon Inc. — imageCLASS X LBP1238 II (06.02 and earlier)
- Canon Inc. — imageCLASS MF450 Series (06.02 and earlier)
- Canon Inc. — imageCLASS X MF1238 II (06.02 and earlier)
- Canon Inc. — imageCLASS X MF1643i II (06.02 and earlier)
- Canon Inc. — imageCLASS X MF1643iF II (06.02 and earlier)
- Canon Inc. — i-SENSYS LBP630C Series (06.02 and earlier)
- Canon Inc. — i-SENSYS MF650C Series (06.02 and earlier)
- Canon Inc. — i-SENSYS LBP230 Series (06.02 and earlier)
- Canon Inc. — 1238P II (06.02 and earlier)
- Canon Inc. — 1238Pr II (06.02 and earlier)
- Canon Inc. — i-SENSYS MF450 Series (06.02 and earlier)
- Canon Inc. — i-SENSYS MF550 Series (06.02 and earlier)
- Canon Inc. — 1238i II (06.02 and earlier)
- Canon Inc. — 1238iF II (06.02 and earlier)
- Canon Inc. — imageRUNNER 1643i II (06.02 and earlier)
- Canon Inc. — imageRUNNER 1643iF II (06.02 and earlier)

## References

- [CNA](https://psirt.canon/advisory-information/cp2026-001/)
- [CNA](https://canon.jp/support/support-info/260115vulnerability-response)
- [CNA](https://www.usa.canon.com/support/canon-product-advisories/Service-Notice-Regarding-Remediation-Measure-Against-Potential-Buffer-Overflow-Vulnerability-in-Laser-Printers-and-Small-Office-Multifunctional-Printers)
- [CNA](https://www.canon-europe.com/support/product-security/)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.80%
- **EPSS Percentile:** 54.3

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-10._