PT-2017-11573 · Justsystems · Rakuraku Hagaki+9

Publicado

2017-11-02

·

Atualizado

2017-11-22

·

CVE-2017-10870

CVSS v2.0

6.8

Média

VetorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Rakuraku Hagaki versions 2016 through 2018 Rakuraku Hagaki Select for Ichitaro versions 2011 through 2017 Ichitaro versions 2011 through 2017 Ichitaro Pro3 Ichitaro Pro2 Ichitaro Pro Ichitaro Government 8 Ichitaro Government 7 Ichitaro Government 6 Ichitaro 2017 Trial version
Description A memory corruption issue allows attackers to execute arbitrary code with the privileges of the application via specially crafted files.
Recommendations For Rakuraku Hagaki versions 2016 through 2018, update to a version that includes the fix for this issue. For Rakuraku Hagaki Select for Ichitaro versions 2011 through 2017, update to a version that includes the fix for this issue. For Ichitaro versions 2011 through 2017, update to a version that includes the fix for this issue. For Ichitaro Pro3, Ichitaro Pro2, Ichitaro Pro, Ichitaro Government 8, Ichitaro Government 7, Ichitaro Government 6, and Ichitaro 2017 Trial version, update to a version that includes the fix for this issue. As a temporary workaround, consider restricting the use of specially crafted files until a patch is available.

Correção

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2017-10870

Produtos afetados

Ichitaro
Ichitaro 2017 Trial Version
Ichitaro Government 6
Ichitaro Government 7
Ichitaro Government 8
Ichitaro Pro
Ichitaro Pro2
Ichitaro Pro3
Rakuraku Hagaki
Rakuraku Hagaki Select For Ichitaro