Vulnerability Description
Buffer overflow in JustSystems Hanako 2004 through 2006, Hanako viewer 1.x, Ichitaro 2004, Ichitaro 2005, Ichitaro Lite2, Ichitaro viewer 4.x, and Sanshiro 2005 allows remote attackers to execute arbitrary code via the (1) Keyword and (2) Title fields, related to string length fields.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Justsystem | Hanako | 2004 |
| Justsystem | Hanako Viewer | 1.0 |
| Justsystem | Ichitaro | All versions |
| Justsystem | Ichitaro Lite2 | All versions |
| Justsystem | Ichitaro Viewer | 4.0 |
| Justsystem | Sanshiro | 2005 |
Related Weaknesses (CWE)
References
- http://jvn.jp/jp/JVN%2347272891/index.html
- http://secunia.com/advisories/23185Vendor Advisory
- http://securitytracker.com/id?1017336
- http://www.justsystem.co.jp/info/pd6005.html
- http://www.lac.co.jp/business/sns/intelligence/SNSadvisory_e/92_e.htmlPatchVendor Advisory
- http://www.securityfocus.com/bid/21445
- http://www.vupen.com/english/advisories/2006/4857
- http://jvn.jp/jp/JVN%2347272891/index.html
- http://secunia.com/advisories/23185Vendor Advisory
- http://securitytracker.com/id?1017336
- http://www.justsystem.co.jp/info/pd6005.html
- http://www.lac.co.jp/business/sns/intelligence/SNSadvisory_e/92_e.htmlPatchVendor Advisory
- http://www.securityfocus.com/bid/21445
- http://www.vupen.com/english/advisories/2006/4857
FAQ
What is CVE-2006-6400?
CVE-2006-6400 is a vulnerability with a CVSS score of 6.8 (MEDIUM). Buffer overflow in JustSystems Hanako 2004 through 2006, Hanako viewer 1.x, Ichitaro 2004, Ichitaro 2005, Ichitaro Lite2, Ichitaro viewer 4.x, and Sanshiro 2005 allows remote attackers to execute arbi...
How severe is CVE-2006-6400?
CVE-2006-6400 has been rated MEDIUM with a CVSS base score of 6.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2006-6400?
Check the references section above for vendor advisories and patch information. Affected products include: Justsystem Hanako, Justsystem Hanako Viewer, Justsystem Ichitaro, Justsystem Ichitaro Lite2, Justsystem Ichitaro Viewer.