Multiple buffer overflows in the rich text processing functionality in JustSystems Ichitaro 2004 through 2007, 11 through 13, and other versions allow remote attackers to execute arbitrary code via a long (1) pard field or (2) font name in the fcharset0 field, which is not properly handled in (a) JSTARO4.OCX; or (3) a long title, which is not properly handled by (b) TJSVDA.DLL.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2007-10-28 17:08
Updated : 2024-02-04 17:13
NVD link : CVE-2007-5687
Mitre link : CVE-2007-5687
CVE.ORG link : CVE-2007-5687
JSON object : View
Products Affected
justsystem
- ichitaro
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer