Service Notice: Vulnerability Mitigation/Remediation for Canon EOS Webcam Utility Pro for MAC OS
Date: June 26, 2025
Canon U.S.A., Inc.
Description:
Canon U.S.A., Inc. has recently become aware that the Canon EOS Webcam Utility Pro for MAC OS contains an improper directory permissions vulnerability. Exploitation of this potential vulnerability requires administrator access by a malicious user. An attacker could modify the directory, potentially resulting in code execution and ultimately leading to privilege escalation.
Affected Versions:
Canon EOS Webcam Utility Pro for MAC OS versions 2.3d (2.3.29) and earlier.
CVE/CVSS:
CVE-2025-5995: Canon EOS Webcam Utility Pro for MAC OS contains an insecure permission issue which could potentially lead to code execution and privilege escalation. CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N Base Score: 4.6
Remediation/Mitigation:
Install Canon EOS Webcam Utility Pro for MAC OS version 2.3e (2.3.41) or higher.
Whenever a new version of the Canon EOS Webcam Utility Pro software is available, upon launch of the application, a message will appear prompting for the installation of the latest version. We recommended that users always upgrade to the latest version to obtain any fixes and/or improvements.
The latest version of the Canon EOS Webcam Utility Pro software can also be downloaded here: https://www.usa.canon.com/digital-cameras/eos-webcam-utility.
Credits:
Canon would like to acknowledge the following individual for identifying this potential vulnerability: Isaac Ordonez.