FUJIFILM announces possible DoS vulnerability in its MFPs
April 27, 2021
The company made an announcement about a Denial of Service (DoS) vulnerability for its multi-function printers and single-function printers.
FUJIFILM Business Innovation informed its customers of a potential risk coming from Denial of Service (DoS) vulnerability that has been found on its multi-function and single-function printers. The affected multi-function and single-function printers’ models are listed in the chart below.
The announcement said: “As of now, there have been no confirmed cases of the occurrence of the attack using the vulnerability. However, in order to ensure that our customers can use our products securely, we would like our customers to confirm if the customers’ devices are listed in the chart and upgrade firmware or implement the workaround that are described in below.”
The vulnerability detected means users with network access can send commands to selected FUJIFILM Business Innovation devices through an unsecured network which can potentially make the machine stop with an error code. The company said that this vulnerability was found to have no impact on the information stored on these devices.
The vulnerability is simply leading to productivity loss by means of device needs to be turned off and on (to recover), when a system fault error (116-324) is displayed on the operational panel.
Status of affected models and fixed firmware
Affected models | Status of fixed firmware |
DocuCentre-VII C7773 / C6673 / C5573 / C4473 / C3373 / C3372 / C2273 | Released |
DocuCentre-VII C7788 / C6688 / C5588 | Released |
ApeosPort-VII C7773 / C6673 / C5573 / C4473 / C3373 / C3372 C2273 | Released |
ApeosPort-VII C7788 / C6688 / C5588 | Released |
ApeosPort C7070 / C6570 / C5570 / C4570 / C3570 / C3070 / C7070G / C6570G / C5570G / C4570G / C3570G / C3070G | Released |
ApeosPort-VII C4421 / C3321 | Released |
ApeosPort C3060 / C2560 / C2060 / C3060G / C2560G / C2060G | Released |
ApeosPort-VII CP4421 | Released |
ApeosPort Print C5570 | Released |
ApeosPort 5570 / 4570 / 5570G / 4570G | Released |
ApeosPort 3560 / 3060 / 2560 / 3560G / 3060G / 2560G | Released |
ApeosPort-VII 5021/ 4021 | Released |
ApeosPort-VII P5021 | Released |
DocuPrint CP 555 d / 505 d | Plan to release in June |
DocuPrint P505 d | Plan to release in June |
PrimeLink C9065/C9070 | Released |
DocuPrint CP475AP | Released |
DocuPrint P475AP | Released |
The updated firmware is to be downloaded through the network using the remote maintenance service or to be applied by customer service engineers.
Categories : Products and Technology