A use-after-free vulnerability exists in the Figure stream parsing functionality of Ichitaro 2023 1.0.1.59372. A specially crafted document can cause memory corruption, resulting in arbitrary code execution. Victim would need to open a malicious file to trigger this vulnerability.
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: talos

Published: 2023-10-19T17:00:43.773Z

Updated: 2023-10-20T17:00:06.097Z

Reserved: 2023-06-08T15:45:16.455Z


Link: CVE-2023-34366

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-10-19T18:15:08.983

Modified: 2023-10-25T14:30:07.750


Link: CVE-2023-34366

JSON object: View

cve-icon Redhat Information

No data.

CWE