PT-2006-7011 · Justsystems · Sanshiro+5
Published
2006-12-10
·
Updated
2011-03-08
·
CVE-2006-6400
CVSS v2.0
6.8
Medium
| Vector | AV:N/AC:M/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
JustSystems Hanako versions 2004 through 2006
JustSystems Hanako viewer version 1.x
JustSystems Ichitaro versions 2004 through 2005
JustSystems Ichitaro Lite2
JustSystems Ichitaro viewer version 4.x
JustSystems Sanshiro version 2005
Description
The issue allows remote attackers to execute arbitrary code via the
Keyword and Title fields, related to string length fields. This is a result of a buffer overflow.Recommendations
For JustSystems Hanako versions 2004 through 2006, update to a version that fixes the buffer overflow issue.
For JustSystems Hanako viewer version 1.x, update to a version that fixes the buffer overflow issue.
For JustSystems Ichitaro versions 2004 through 2005, update to a version that fixes the buffer overflow issue.
For JustSystems Ichitaro Lite2, update to a version that fixes the buffer overflow issue.
For JustSystems Ichitaro viewer version 4.x, update to a version that fixes the buffer overflow issue.
For JustSystems Sanshiro version 2005, update to a version that fixes the buffer overflow issue.
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Hanako
Hanako Viewer
Ichitaro
Ichitaro Lite2
Ichitaro Viewer
Sanshiro