Vulnerability Description
Buffer overflow in JustSystems JSFC.DLL, as used in multiple JustSystems products such as Ichitaro, allows remote attackers to execute arbitrary code via a crafted .JTD file.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Justsystem | Ichitaro | 11.0 |
| Justsystem | Ichitaro Lite2 | All versions |
| Justsystem | Ichitaro Viewer | All versions |
Related Weaknesses (CWE)
References
- http://jvn.jp/jp/JVN%2308237857/index.html
- http://secunia.com/advisories/28275Vendor Advisory
- http://www.fourteenforty.jp/research/advisory.cgi?FFRRA-20080107
- http://www.justsystems.com/jp/info/pd8001.html
- http://www.securityfocus.com/bid/27153
- http://www.securitytracker.com/id?1019168
- http://www.vupen.com/english/advisories/2008/0045
- https://exchange.xforce.ibmcloud.com/vulnerabilities/39501
- http://jvn.jp/jp/JVN%2308237857/index.html
- http://secunia.com/advisories/28275Vendor Advisory
- http://www.fourteenforty.jp/research/advisory.cgi?FFRRA-20080107
- http://www.justsystems.com/jp/info/pd8001.html
- http://www.securityfocus.com/bid/27153
- http://www.securitytracker.com/id?1019168
- http://www.vupen.com/english/advisories/2008/0045
FAQ
What is CVE-2008-0223?
CVE-2008-0223 is a vulnerability with a CVSS score of 9.3 (HIGH). Buffer overflow in JustSystems JSFC.DLL, as used in multiple JustSystems products such as Ichitaro, allows remote attackers to execute arbitrary code via a crafted .JTD file.
How severe is CVE-2008-0223?
CVE-2008-0223 has been rated HIGH with a CVSS base score of 9.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2008-0223?
Check the references section above for vendor advisories and patch information. Affected products include: Justsystem Ichitaro, Justsystem Ichitaro Lite2, Justsystem Ichitaro Viewer.