FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

ChaSen -- buffer overflow

Affected packages
chasen-base < 2.4.5
chasen < 2.4.5

Details

VuXML ID 972837fc-c304-11e3-8758-00262d5ed8ee
Discovery 2011-11-08
Entry 2014-04-13

JVN iPedia reports:

ChaSen provided by Nara Institute of Science and Technology is a software for morphologically analyzing Japanese. ChaSen contains an issue when reading in strings, which may lead to a buffer overflow.

An arbitrary script may be executed by an attacker with access to a system that is running a product listed in "Products Affected."

References

CVE Name CVE-2011-4000
URL http://jvn.jp/en/jp/JVN16901583/index.html