Multiple buffer overflows in the rich text processing functionality in JustSystems Ichitaro 2004 through 2007, 11 through 13, and other versions allow remote attackers to execute arbitrary code via a long (1) pard field or (2) font name in the fcharset0 field, which is not properly handled in (a) JSTARO4.OCX; or (3) a long title, which is not properly handled by (b) TJSVDA.DLL.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2007-10-28 10:08
Updated : 2017-07-28 18:33
NVD link : CVE-2007-5687
Mitre link : CVE-2007-5687
JSON object : View
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer
Products Affected
justsystem
- ichitaro