Debian Security Advisory

DSA-2361-1 chasen -- buffer overflow

Date Reported:
07 Dec 2011
Affected Packages:
chasen
Vulnerable:
Yes
Security database references:
In Mitre's CVE dictionary: CVE-2011-4000.
More information:

It was discovered that ChaSen, a Japanese morphological analysis system, contains a buffer overflow, potentially leading to arbitrary code execution in programs using the library.

For the oldstable distribution (lenny), this problem has been fixed in version 2.4.4-2+lenny2.

For the stable distribution (squeeze), this problem has been fixed in version 2.4.4-11+squeeze2.

We recommend that you upgrade your chasen packages.