CVE-2019-14310: Ricoh SP c250dn Firmware

Critical severity, CVSS 9.8. EPSS: 1.9% chance of exploitation in the next 30 days.

Ricoh SP C250DN 1.05 devices allow denial of service (issue 2 of 3). Unauthenticated crafted packets to the IPP service will cause a vulnerable device to crash. A memory corruption has been identified in the way of how the embedded device parsed the IPP packets

Affected products

  • Ricoh SP c250dn Firmware: version 1.05 only
  • Ricoh SP c250sf Firmware: any version
  • Ricoh SP c252dn Firmware: any version
  • Ricoh SP c252sf Firmware: any version

Published 2020-03-13. Last modified 2026-06-17.