Security Advisory

CVE-2023-34366

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2023-10-19 17:00:43
Last updated 2025-11-04 19:16:47
Assigner talos
CVSS score 7.8
State PUBLISHED

Description

A use-after-free vulnerability exists in the Figure stream parsing functionality of Ichitaro 2023 1.0.1.59372. A specially crafted document can cause memory corruption, resulting in arbitrary code execution. Victim would need to open a malicious file to trigger this vulnerability.