PT-2006-7011 · Justsystems · Sanshiro+5

Publicado

2006-12-10

·

Atualizado

2011-03-08

·

CVE-2006-6400

CVSS v2.0

6.8

Média

VetorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions JustSystems Hanako versions 2004 through 2006 JustSystems Hanako viewer version 1.x JustSystems Ichitaro versions 2004 through 2005 JustSystems Ichitaro Lite2 JustSystems Ichitaro viewer version 4.x JustSystems Sanshiro version 2005
Description The issue allows remote attackers to execute arbitrary code via the Keyword and Title fields, related to string length fields. This is a result of a buffer overflow.
Recommendations For JustSystems Hanako versions 2004 through 2006, update to a version that fixes the buffer overflow issue. For JustSystems Hanako viewer version 1.x, update to a version that fixes the buffer overflow issue. For JustSystems Ichitaro versions 2004 through 2005, update to a version that fixes the buffer overflow issue. For JustSystems Ichitaro Lite2, update to a version that fixes the buffer overflow issue. For JustSystems Ichitaro viewer version 4.x, update to a version that fixes the buffer overflow issue. For JustSystems Sanshiro version 2005, update to a version that fixes the buffer overflow issue.

Correção

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2006-6400

Produtos afetados

Hanako
Hanako Viewer
Ichitaro
Ichitaro Lite2
Ichitaro Viewer
Sanshiro