CVE-2007-6436

High PUBLISHED

Stack-based buffer overflow in JSGCI.DLL in JustSystems Ichitaro 2005, 2006, and 2007 allows user-assisted remote attackers to execute arbitrary...

JustSystems · Ichitaro

Not yet in CISA KEV

Exploited in the wild

Recommended Action

Prioritize remediation. Validate affected assets and apply vendor fixes on an accelerated timeline.

Confidence
High
Exploitation Status
Exploited in the wild
Observed in Sensors
No
Attempts (30d)
Unique Attacker IPs
CISA KEV
Not yet in CISA KEV
CVSS / EPSS
9.3 High

At a Glance

Stack-based buffer overflow in JSGCI.DLL in JustSystems Ichitaro 2005, 2006, and 2007 allows user-assisted remote attackers to execute arbitrary code via a crafted document, as actively exploited in December 2007 by the Tarodrop.F trojan. NOTE: some of these details are obtained from third party information.

CVE Published
Dec 18, 2007
Exploitation Reported
Dec 18, 2007
CVSS
9.3 High
EPSS
Remote Unauthenticated

Affected Versions

Vendor Product Version Status
n/a
n/a

n/a

Affected

CVE References

  • 27992 secunia.com · Third-Party Advisory http://secunia.com/advisories/27992
  • 39395 osvdb.org · VDB Entry http://www.osvdb.org/39395
  • justsystems-jsgci-bo(39025) exchange.xforce.ibmcloud.com · VDB Entry https://exchange.xforce.ibmcloud.com/vulnerabilities/39025
  • ADV-2007-4213 vupen.com · VDB Entry http://www.vupen.com/english/advisories/2007/4213
  • symantec.com/security_response/writeup.jsp symantec.com · CVE Record http://www.symantec.com/security_response/writeup.jsp?docid=2007-1213...

Recommended Actions

  • Prioritize remediation. Validate affected assets and apply vendor fixes on an accelerated timeline.
  • Use the Pro API to automate enrichment, telemetry, and workflow delivery for VM, SOC, and CTI pipelines.