PT-2017-11573 · Justsystems · Rakuraku Hagaki+9
Publicado
2017-11-02
·
Atualizado
2017-11-22
·
CVE-2017-10870
CVSS v2.0
6.8
Média
| Vetor | AV:N/AC:M/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Rakuraku Hagaki versions 2016 through 2018
Rakuraku Hagaki Select for Ichitaro versions 2011 through 2017
Ichitaro versions 2011 through 2017
Ichitaro Pro3
Ichitaro Pro2
Ichitaro Pro
Ichitaro Government 8
Ichitaro Government 7
Ichitaro Government 6
Ichitaro 2017 Trial version
Description
A memory corruption issue allows attackers to execute arbitrary code with the privileges of the application via specially crafted files.
Recommendations
For Rakuraku Hagaki versions 2016 through 2018, update to a version that includes the fix for this issue.
For Rakuraku Hagaki Select for Ichitaro versions 2011 through 2017, update to a version that includes the fix for this issue.
For Ichitaro versions 2011 through 2017, update to a version that includes the fix for this issue.
For Ichitaro Pro3, Ichitaro Pro2, Ichitaro Pro, Ichitaro Government 8, Ichitaro Government 7, Ichitaro Government 6, and Ichitaro 2017 Trial version, update to a version that includes the fix for this issue.
As a temporary workaround, consider restricting the use of specially crafted files until a patch is available.
Correção
Buffer Overflow
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Ichitaro
Ichitaro 2017 Trial Version
Ichitaro Government 6
Ichitaro Government 7
Ichitaro Government 8
Ichitaro Pro
Ichitaro Pro2
Ichitaro Pro3
Rakuraku Hagaki
Rakuraku Hagaki Select For Ichitaro