First published: Thu Oct 19 2023(Updated: )
An out-of-bounds write vulnerability exists in the "HyperLinkFrame" stream parser of Ichitaro 2023 1.0.1.59372. A specially crafted document can cause a type confusion, which can lead to memory corruption and eventually arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.
Credit: talos-cna@cisco.com talos-cna@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Justsystems Easy Postcard Max | ||
Justsystems Ichitaro 2021 | ||
Justsystems Ichitaro 2022 | ||
Justsystems Ichitaro 2023 | =1.0.1.59372 | |
Justsystems Ichitaro Government 10 | ||
Justsystems Ichitaro Government 8 | ||
Justsystems Ichitaro Government 9 | ||
Justsystems Ichitaro Pro 3 | ||
Justsystems Ichitaro Pro 4 | ||
Justsystems Ichitaro Pro 5 | ||
Justsystems Just Government 3 | ||
Justsystems Just Government 4 | ||
Justsystems Just Government 5 | ||
Justsystems Just Office 3 | ||
Justsystems Just Office 4 | ||
Justsystems Just Office 5 | ||
Justsystems Just Police 3 | ||
Justsystems Just Police 4 | ||
Justsystems Just Police 5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.