PT-2006-7011 · Justsystems · Sanshiro+5

Published

2006-12-10

·

Updated

2011-03-08

·

CVE-2006-6400

CVSS v2.0

6.8

Medium

VectorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions JustSystems Hanako versions 2004 through 2006 JustSystems Hanako viewer version 1.x JustSystems Ichitaro versions 2004 through 2005 JustSystems Ichitaro Lite2 JustSystems Ichitaro viewer version 4.x JustSystems Sanshiro version 2005
Description The issue allows remote attackers to execute arbitrary code via the Keyword and Title fields, related to string length fields. This is a result of a buffer overflow.
Recommendations For JustSystems Hanako versions 2004 through 2006, update to a version that fixes the buffer overflow issue. For JustSystems Hanako viewer version 1.x, update to a version that fixes the buffer overflow issue. For JustSystems Ichitaro versions 2004 through 2005, update to a version that fixes the buffer overflow issue. For JustSystems Ichitaro Lite2, update to a version that fixes the buffer overflow issue. For JustSystems Ichitaro viewer version 4.x, update to a version that fixes the buffer overflow issue. For JustSystems Sanshiro version 2005, update to a version that fixes the buffer overflow issue.

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2006-6400

Affected Products

Hanako
Hanako Viewer
Ichitaro
Ichitaro Lite2
Ichitaro Viewer
Sanshiro