9.3

CVE-2009-4776

Buffer overflow in Hitachi Cosminexus V4 through V8, Processing Kit for XML, and Developer's Kit for Java, as used in products such as uCosminexus, Electronic Form Workflow, Groupmax, and IBM XL C/C++ Enterprise Edition 7 and 8, allows remote attackers to have an unknown impact via vectors related to the use of GIF image processing APIs by a Java application, and a different issue from CVE-2007-3794.

Data is provided by the National Vulnerability Database (NVD)
HitachiUcosminexus Application Server Version06-70 Update- Editionenterprise
HitachiUcosminexus Application Server Version06-70 Update- Editionstandard
HitachiUcosminexus Application Server Version06-70f Update- Editionenterprise
HitachiUcosminexus Application Server Version06-70f Update- Editionstandard
HitachiUcosminexus Application Server Version06-71 Update- Editionenterprise
HitachiUcosminexus Application Server Version06-71 Update- Editionstandard
HitachiUcosminexus Application Server Version06-72 Update- Editionenterprise
HitachiUcosminexus Application Server Version06-72 Update- Editionstandard
HitachiUcosminexus Application Server Version6.7 Update- Editionenterprise
HitachiUcosminexus Application Server Version6.7 Update- Editionstandard
HitachiUcosminexus Application Server Version7 Update- Editionenterprise
HitachiUcosminexus Application Server Version7 Update- Editionstandard
HitachiUcosminexus Application Server Version07-00 Update- Editionenterprise
HitachiUcosminexus Application Server Version07-00 Update- Editionstandard
HitachiUcosminexus Application Server Version07-10 Update- Editionenterprise
HitachiUcosminexus Application Server Version07-10 Update- Editionstandard
HitachiUcosminexus Application Server Version07-60 Update- Editionenterprise
HitachiUcosminexus Application Server Version07-60 Update- Editionstandard
HitachiUcosminexus Application Server Version8 Update- Editionenterprise
HitachiUcosminexus Application Server Version8 Update- Editionstandard
HitachiUcosminexus Application Server Version08-00 Update- Editionenterprise
HitachiUcosminexus Application Server Version08-00 Update- Editionstandard
HitachiUcosminexus Client Version06-70
HitachiUcosminexus Client Version06-71
HitachiUcosminexus Client Version07-00
HitachiUcosminexus Client Version07-60
HitachiUcosminexus Client Version08-00
HitachiUcosminexus Collaboration Version06-20 Update- Editionserver
HitachiUcosminexus Collaboration Version06-30 Update- Editionserver
HitachiUcosminexus Collaboration Version06-35 Update- Editionserver
HitachiUcosminexus Developer Version6 Update- Editionpro
HitachiUcosminexus Developer Version6 Update- Editionstandard
HitachiUcosminexus Developer Version06-70 Update- Editionlight
HitachiUcosminexus Developer Version06-70 Update- Editionpro
HitachiUcosminexus Developer Version06-70 Update- Editionstandard
HitachiUcosminexus Developer Version06-71 Update- Editionlight
HitachiUcosminexus Developer Version06-71 Update- Editionpro
HitachiUcosminexus Developer Version06-71 Update- Editionstandard
HitachiUcosminexus Developer Version6.7 Update- Editionlight
HitachiUcosminexus Developer Version6.7 Update- Editionpro
HitachiUcosminexus Developer Version6.7 Update- Editionstandard
HitachiUcosminexus Developer Version7 Update- Editionlight
HitachiUcosminexus Developer Version7 Update- Editionpro
HitachiUcosminexus Developer Version7 Update- Editionstandard
HitachiUcosminexus Developer Version07-00 Update- Editionpro
HitachiUcosminexus Developer Version07-00 Update- Editionstandard
HitachiUcosminexus Developer Version07-60 Update- Editionpro
HitachiUcosminexus Developer Version07-60 Update- Editionstandard
HitachiUcosminexus Developer Version8 Update- Editionlight
HitachiUcosminexus Developer Version8 Update- Editionpro
HitachiUcosminexus Developer Version8 Update- Editionstandard
HitachiUcosminexus Developer Version08-00 Update- Editionpro
HitachiUcosminexus Developer Version08-00 Update- Editionstandard
HitachiUcosminexus Operator Version6.7
HitachiUcosminexus Operator Version07-00
HitachiUcosminexus Operator Version07-60
HitachiProcessing Kit For Xml Version01-00
HitachiProcessing Kit For Xml Version01-05
HitachiProcessing Kit For Xml Version01-07
HitachiProcessing Kit For Xml Version02-00
HitachiProcessing Kit For Xml Version02-05
HitachiGroupmax Collaboration Version07-20 Update- Editionserver
HitachiGroupmax Collaboration Version07-30 Update- Editionserver
HitachiGroupmax Collaboration Version07-35 Update- Editionserver
HitachiCosminexus Application Server Version6 Update- Editionenterprise
HitachiCosminexus Application Server Version06-00 Update- Editionenterprise
HitachiCosminexus Application Server Version06-00 Update- Editionstandard
HitachiCosminexus Application Server Version06-02 Update- Editionenterprise
HitachiCosminexus Application Server Version06-02 Update- Editionstandard
HitachiCosminexus Application Server Version06-50 Update- Editionenterprise
HitachiCosminexus Application Server Version06-50 Update- Editionstandard
HitachiCosminexus Application Server Version06-51 Update- Editionenterprise
HitachiCosminexus Application Server Version06-51 Update- Editionstandard
HitachiCosminexus Client Version06-00
HitachiCosminexus Client Version06-02
HitachiCosminexus Client Version06-50
HitachiCosminexus Client Version06-51
HitachiCosminexus Studio Version04-00 Update- Editionstandard
HitachiCosminexus Studio Version04-00 Update- Editionweb
HitachiCosminexus Studio Version04-01 Update- Editionstandard
HitachiCosminexus Studio Version04-01 Update- Editionweb
HitachiCosminexus Studio Version05-00
HitachiCosminexus Studio Version05-01
HitachiCosminexus Studio Version05-05
HitachiCosminexus Server Version04-00 Update- Editionstandard
HitachiCosminexus Server Version04-00 Update- Editionweb
HitachiCosminexus Server Version04-01 Update- Editionstandard
HitachiCosminexus Server Version04-01 Update- Editionweb
HitachiCosminexus Developer Version05-00
HitachiCosminexus Developer Version05-01
HitachiCosminexus Developer Version05-05
HitachiCosminexus Developer Version6 Update- Editionlight
HitachiCosminexus Developer Version6 Update- Editionpro
HitachiCosminexus Developer Version6 Update- Editionstandard
HitachiCosminexus Developer Version06-00 Update- Editionlight
HitachiCosminexus Developer Version06-00 Update- Editionpro
HitachiCosminexus Developer Version06-00 Update- Editionstandard
HitachiCosminexus Developer Version06-02 Update- Editionlight
HitachiCosminexus Developer Version06-02 Update- Editionpro
HitachiCosminexus Developer Version06-02 Update- Editionstandard
HitachiCosminexus Developer Version06-50 Update- Editionlight
HitachiCosminexus Developer Version06-50 Update- Editionpro
HitachiCosminexus Developer Version06-50 Update- Editionstandard
HitachiCosminexus Developer Version06-51 Update- Editionlight
HitachiCosminexus Developer Version06-51 Update- Editionpro
HitachiCosminexus Developer Version06-51 Update- Editionstandard
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 1.34% 0.782
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 9.3 8.6 10
AV:N/AC:M/Au:N/C:C/I:C/A:C
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.