Vulnerability Description
JustSystems Ichitaro 2005 through 2011, Ichitaro Government 6, Ichitaro Government 2006 through 2010, Ichitaro Portable, Ichitaro Pro, and Ichitaro Viewer allow remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a crafted document, as exploited in the wild in early 2011.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Justsystems | Ichitaro | 6 |
| Justsystems | Ichitaro Portable | All versions |
| Justsystems | Ichitaro Pro | All versions |
| Justsystems | Ichitaro Viewer | All versions |
Related Weaknesses (CWE)
References
- http://jvn.jp/en/jp/JVN87239473/index.html
- http://jvndb.jvn.jp/jvndb/JVNDB-2011-000043
- http://secunia.com/advisories/44956Vendor Advisory
- http://www.justsystems.com/jp/info/js11001.htmlPatchVendor Advisory
- http://www.securityfocus.com/bid/48283
- http://www.symantec.com/connect/blogs/targeted-attacks-2011-using-ichitaro-zero-Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/68072
- http://jvn.jp/en/jp/JVN87239473/index.html
- http://jvndb.jvn.jp/jvndb/JVNDB-2011-000043
- http://secunia.com/advisories/44956Vendor Advisory
- http://www.justsystems.com/jp/info/js11001.htmlPatchVendor Advisory
- http://www.securityfocus.com/bid/48283
- http://www.symantec.com/connect/blogs/targeted-attacks-2011-using-ichitaro-zero-Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/68072
FAQ
What is CVE-2011-1331?
CVE-2011-1331 is a vulnerability with a CVSS score of 9.3 (HIGH). JustSystems Ichitaro 2005 through 2011, Ichitaro Government 6, Ichitaro Government 2006 through 2010, Ichitaro Portable, Ichitaro Pro, and Ichitaro Viewer allow remote attackers to execute arbitrary c...
How severe is CVE-2011-1331?
CVE-2011-1331 has been rated HIGH with a CVSS base score of 9.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2011-1331?
Check the references section above for vendor advisories and patch information. Affected products include: Justsystems Ichitaro, Justsystems Ichitaro Portable, Justsystems Ichitaro Pro, Justsystems Ichitaro Viewer.