Key Information Vulnerability Overview Vulnerability ID: JVNVU#93897456 Vulnerability Type: Out-of-bounds write vulnerability Affected Products: FUJIFILM Business Innovation MFPs (Multifunction Printers) Affected Products DocuPrint CP225 w 01.23.02 and earlier DocuPrint CP228 w 01.23.02 and earlier DocuPrint CP115 w 01.09.00 and earlier DocuPrint CP118 w 01.09.00 and earlier DocuPrint CP116 w 01.09.00 and earlier DocuPrint CP119 w 01.09.00 and earlier DocuPrint CM225 fw 01.12.02 and earlier DocuPrint CM228 fw 01.12.02 and earlier DocuPrint CM115 w 01.09.01 and earlier DocuPrint CM118 w 01.09.01 and earlier Apeos 2150 N 01.00.47 and earlier Apeos 2350 NDA 01.00.47 and earlier Apeos 2150 ND 01.00.47 and earlier Apeos 2150 NDA 01.00.47 and earlier Description Vulnerability Details: Out-of-bounds Write (CWE-787) CVSS Score: - CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N Base Score 6.9 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L Base Score 5.3 CVE ID: CVE-2025-48499 Impact Maliciously crafted IPP or LPD packets may cause affected MFPs to experience a Denial of Service (DoS) condition, requiring a reset of the MFP to recover. Solution Firmware Update: Apply the appropriate firmware update as provided by the vendor. Reporter Reported by Jia-Ju Bai, Rui-Nan Hu, Dong Zhang, and Zhen-Yu Guan from the School of Cyber Science and Technology, Beihang University.