Description
An out-of-bounds write vulnerability exists in the "HyperLinkFrame" stream parser of Ichitaro 2023 1.0.1.59372. A specially crafted document can cause a type confusion, which can lead to memory corruption and eventually arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-41954 | An out-of-bounds write vulnerability exists in the "HyperLinkFrame" stream parser of Ichitaro 2023 1.0.1.59372. A specially crafted document can cause a type confusion, which can lead to memory corruption and eventually arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability. |
References
History
No history.
Subscriptions
Justsystems
Subscribe
Easy Postcard Max
Subscribe
Ichitaro 2021
Subscribe
Ichitaro 2022
Subscribe
Ichitaro 2023
Subscribe
Ichitaro Government 10
Subscribe
Ichitaro Government 8
Subscribe
Ichitaro Government 9
Subscribe
Ichitaro Pro 3
Subscribe
Ichitaro Pro 4
Subscribe
Ichitaro Pro 5
Subscribe
Just Government 3
Subscribe
Just Government 4
Subscribe
Just Government 5
Subscribe
Just Office 3
Subscribe
Just Office 4
Subscribe
Just Office 5
Subscribe
Just Police 3
Subscribe
Just Police 4
Subscribe
Just Police 5
Subscribe
Status: PUBLISHED
Assigner: talos
Published:
Updated: 2025-02-13T17:01:45.749Z
Reserved: 2023-07-17T22:09:40.438Z
Link: CVE-2023-38128
Updated: 2024-08-02T17:30:14.086Z
Status : Modified
Published: 2023-10-19T18:15:09.560
Modified: 2024-11-21T08:12:55.110
Link: CVE-2023-38128
No data.
OpenCVE Enrichment
No data.
EUVD