
CVE-2008-0223
https://notcve.org/view.php?id=CVE-2008-0223
10 Jan 2008 — Buffer overflow in JustSystems JSFC.DLL, as used in multiple JustSystems products such as Ichitaro, allows remote attackers to execute arbitrary code via a crafted .JTD file. Un desbordamiento de búfer en JustSystems en la biblioteca JSFC.DLL, como es usado en varios productos de JustSystems como Ichitaro, permite a atacantes remotos ejecutar código arbitrario por medio de un archivo .JTD especialmente diseñado. • http://jvn.jp/jp/JVN%2308237857/index.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2007-6436
https://notcve.org/view.php?id=CVE-2007-6436
18 Dec 2007 — Stack-based buffer overflow in JSGCI.DLL in JustSystems Ichitaro 2005, 2006, and 2007 allows user-assisted remote attackers to execute arbitrary code via a crafted document, as actively exploited in December 2007 by the Tarodrop.F trojan. NOTE: some of these details are obtained from third party information. Desbordamiento de búfer basado en pila en JSGCI.DLL en JustSystems Ichitaro 2005, 2006, y 2007 permite a atacantes remotos con la intervención del usuario ejecutar código de su elección a través de docu... • http://secunia.com/advisories/27992 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2007-5687
https://notcve.org/view.php?id=CVE-2007-5687
28 Oct 2007 — Multiple buffer overflows in the rich text processing functionality in JustSystems Ichitaro 2004 through 2007, 11 through 13, and other versions allow remote attackers to execute arbitrary code via a long (1) pard field or (2) font name in the fcharset0 field, which is not properly handled in (a) JSTARO4.OCX; or (3) a long title, which is not properly handled by (b) TJSVDA.DLL. Múltiples desbordamientos de búfer en la funcionalidad de procesamiento de texto enriquecido en el JustSystems Ichitaro 2004 hasta ... • http://jvn.jp/jp/JVN%2329211062/index.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2007-4246
https://notcve.org/view.php?id=CVE-2007-4246
08 Aug 2007 — Unspecified vulnerability, possibly a buffer overflow, in Justsystem Ichitaro 2007 and earlier allows remote attackers to execute arbitrary code via a modified document, as actively exploited in August 2007 by malware such as Tarodrop.D (Tarodrop.Q), a different vulnerability than CVE-2006-4326, CVE-2006-5424, CVE-2006-6400, and CVE-2007-1938. Vulnerabilidad no especificada, posiblemente un desbordamiento de búfer, en Justsystem Ichitaro 2007 y anteriores permite a atacantes remotos ejecutar código de su el... • http://osvdb.org/39393 •

CVE-2006-6400
https://notcve.org/view.php?id=CVE-2006-6400
10 Dec 2006 — Buffer overflow in JustSystems Hanako 2004 through 2006, Hanako viewer 1.x, Ichitaro 2004, Ichitaro 2005, Ichitaro Lite2, Ichitaro viewer 4.x, and Sanshiro 2005 allows remote attackers to execute arbitrary code via the (1) Keyword and (2) Title fields, related to string length fields. Desbordamiento de búfer en JustSystems Hanako 2004 hasta 2006, Hanako viewer 1.x, Ichitaro 2004, Ichitaro 2005, Ichitaro Lite2, Ichitaro viewer 4.x, y Sanshiro 2005 permite a atacantes remotos ejecutar código de su elección me... • http://jvn.jp/jp/JVN%2347272891/index.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2006-5424
https://notcve.org/view.php?id=CVE-2006-5424
20 Oct 2006 — Unspecified vulnerability in Justsystem Ichitaro 2006, 2006 trial version, and Government 2006 allows remote attackers to execute arbitrary code via a modified document, possibly because of a buffer overflow, a different vulnerability than CVE-2006-4326. Vulnerabilidad no especificada en Justsystem Ichitaro 2006, 2006 trial version, y Government 2006 permite a un atacante remoto ejecutar código de su elección a través de un documento modificado, posiblemente a causa de un desbordamiento de búfer, una vulner... • http://jvn.jp/jp/JVN%2390815371/index.html • CWE-399: Resource Management Errors •

CVE-2006-4326
https://notcve.org/view.php?id=CVE-2006-4326
24 Aug 2006 — Stack-based buffer overflow in Justsystem Ichitaro 9.x through 13.x, Ichitaro 2004, 2005, 2006, and Government 2006; Ichitaro for Linux; and FormLiner before 20060818 allows remote attackers to execute arbitrary code via long Unicode strings in a crafted document, as being actively exploited by malware such as Trojan.Tarodrop. NOTE: some details are obtained from third party information. Desbordamiento de búfer basado en pila en Justsystem Ichitaro 9.x hasta 13.x, Ichitaro 2004, 2005, 2006, y Government 200... • http://secunia.com/advisories/21552 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •