First published: Tue Dec 18 2007(Updated: )
Stack-based buffer overflow in JSGCI.DLL in JustSystems Ichitaro 2005, 2006, and 2007 allows user-assisted remote attackers to execute arbitrary code via a crafted document, as actively exploited in December 2007 by the Tarodrop.F trojan. NOTE: some of these details are obtained from third party information.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Justsystems Ichitaro 2017 | =2005 | |
Justsystems Ichitaro 2017 | =2006 | |
Justsystems Ichitaro 2017 | =2007 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-6436 is a critical vulnerability that allows remote attackers to execute arbitrary code due to a stack-based buffer overflow.
To fix CVE-2007-6436, users should update to a patched version of JustSystems Ichitaro that resolves this buffer overflow vulnerability.
CVE-2007-6436 affects JustSystems Ichitaro 2005, 2006, and 2007.
CVE-2007-6436 enables user-assisted remote attackers to execute arbitrary code via a specially crafted document.
While CVE-2007-6436 was actively exploited in 2007, users of the affected software should still be aware of it and ensure they have the latest updates to prevent vulnerabilities.