Epson L14150 Buffer Overflow Vulnerability in RAW Printing Service via TCP Port 9100

Vulnerability

A buffer overflow vulnerability has been identified in the Epson L14150 printer, specifically in the FL27PB firmware version. This vulnerability allows remote, unauthenticated attackers to execute arbitrary code by sending crafted network payloads through the RAW Printing Service (JetDirect/AppSocket) on TCP port 9100. The issue arises from the printer's handling of malformed print job data, leading to memory corruption and potential exploitation.

Impact

Exploitation of this vulnerability can cause memory corruption, destabilize the printer's parsing engine, disrupt normal firmware operations, and potentially allow for arbitrary code execution.

Reproduction

The vulnerability can be reproduced by sending specially crafted RAW print job payloads to the printer over TCP port 9100. This can be done using a custom Python script that exploits the buffer overflow by targeting the printer's memory management. The script can be integrated into a tool called 'PrintHack', which automates the exploitation process.

Added: May 20, 2026, 4:26 PM
Updated: May 20, 2026, 4:26 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
7.5
exploitability
8.2
remediation
0.0
relevance
8.9
threat
6.4
urgency
2.9
incentive
4.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.