Multiple improper restriction of operations within the bounds of a memory buffer issues exist in TELLUS V4.0.17.0 and earlier and TELLUS Lite V4.0.17.0 and earlier. If a user opens a specially crafted file (X1, V8, or V9 file), information may be disclosed and/or arbitrary code may be executed.
References
Link | Resource |
---|---|
https://hakko-elec.co.jp/site/download/03tellus_inf/index.php | Vendor Advisory |
https://jvn.jp/en/vu/JVNVU93840158/ | Third Party Advisory |
https://monitouch.fujielectric.com/site/download-e/03tellus_inf/index.php | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: jpcert
Published: 2023-11-15T05:40:43.526Z
Updated: 2023-11-15T05:40:43.526Z
Reserved: 2023-11-07T02:41:20.172Z
Link: CVE-2023-47580
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-11-15T06:15:28.030
Modified: 2023-11-21T20:36:59.427
Link: CVE-2023-47580
JSON object: View
Redhat Information
No data.
CWE