First published: Thu Aug 24 2006(Updated: )
Stack-based buffer overflow in Justsystem Ichitaro 9.x through 13.x, Ichitaro 2004, 2005, 2006, and Government 2006; Ichitaro for Linux; and FormLiner before 20060818 allows remote attackers to execute arbitrary code via long Unicode strings in a crafted document, as being actively exploited by malware such as Trojan.Tarodrop. NOTE: some details are obtained from third party information.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Justsystem Formliner | ||
Justsystems Ichitaro 2017 | =9.0 | |
Justsystems Ichitaro 2017 | =10.0 | |
Justsystems Ichitaro 2017 | =11.0 | |
Justsystems Ichitaro 2017 | =12.0 | |
Justsystems Ichitaro 2017 | =13.0 | |
Justsystems Ichitaro 2017 | =2004 | |
Justsystems Ichitaro 2017 | =2005 | |
Justsystems Ichitaro 2017 | =2006 | |
Justsystem Ichitaro Government | =2006 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-4326 is rated as critical due to its potential to allow remote attackers to execute arbitrary code.
To fix CVE-2006-4326, update the affected Justsystem Ichitaro and FormLiner software to the latest patched versions.
CVE-2006-4326 affects Justsystem Ichitaro versions 9.x through 13.x and FormLiner software before 20060818.
CVE-2006-4326 is a stack-based buffer overflow vulnerability caused by handling long Unicode strings.
Yes, CVE-2006-4326 has been reported to be actively exploited by malware.