Description
A use-after-free vulnerability exists in the Figure stream parsing functionality of Ichitaro 2023 1.0.1.59372. A specially crafted document can cause memory corruption, resulting in arbitrary code execution. Victim would need to open a malicious file to trigger this vulnerability.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-38446 | A use-after-free vulnerability exists in the Figure stream parsing functionality of Ichitaro 2023 1.0.1.59372. A specially crafted document can cause memory corruption, resulting in arbitrary code execution. Victim would need to open a malicious file to trigger this vulnerability. |
References
History
Tue, 04 Nov 2025 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Subscriptions
Justsystems
Subscribe
Easy Postcard Max
Subscribe
Ichitaro 2021
Subscribe
Ichitaro 2022
Subscribe
Ichitaro 2023
Subscribe
Ichitaro Government 10
Subscribe
Ichitaro Government 8
Subscribe
Ichitaro Government 9
Subscribe
Ichitaro Pro 3
Subscribe
Ichitaro Pro 4
Subscribe
Ichitaro Pro 5
Subscribe
Just Government 3
Subscribe
Just Government 4
Subscribe
Just Government 5
Subscribe
Just Office 3
Subscribe
Just Office 4
Subscribe
Just Office 5
Subscribe
Just Police 3
Subscribe
Just Police 4
Subscribe
Just Police 5
Subscribe
Status: PUBLISHED
Assigner: talos
Published:
Updated: 2025-11-04T19:16:47.534Z
Reserved: 2023-06-08T15:45:16.455Z
Link: CVE-2023-34366
Updated: 2024-08-02T16:10:06.680Z
Status : Modified
Published: 2023-10-19T18:15:08.983
Modified: 2025-11-04T20:16:31.997
Link: CVE-2023-34366
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD