Record summary

CVE-2023-22291 has a selected CVSS score of 7.0 (high).

Description

An invalid free vulnerability exists in the Frame stream parser functionality of Ichitaro 2022 1.0.1.57600. A specially crafted document can lead to an attempt to free a stack pointer, which causes memory corruption. An attacker can provide a malicious file to trigger this vulnerability.

Description source: CVE List

Exploitation context

CISA SSVC decision

ExploitationPoC
AutomatableNo
Technical impactTotal

CISA Coordinator · SSVC 2.0.3 · Evaluated Aug 1, 2024 · Source: CVE List

Affected products and versions

2
ProductSourceVersion rangeStatus
CVE List2022 1.0.1.57600affected

Default status: unknown

CVE List1.0.1.57600affected

References

4