CVE-2018-5201
- EPSS 0.16%
- Veröffentlicht 21.12.2018 16:29:00
- Zuletzt bearbeitet 21.11.2024 04:08:19
Hancom Office 2018 10.0.0.8214 and earlier, Hancom Office NEO 9.6.1.10472 and earlier, Hancom Office 2014 9.1.1.4540 and earlier, Hancom Office 2010 8.5.8.1724 and earlier versions have a heap overflow vulnerability when handling Compound File in doc...
CVE-2016-4293
- EPSS 1.12%
- Veröffentlicht 20.04.2017 17:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Multiple heap-based buffer overflows in the (1) CBookBase::SetDefTableStyle and (2) CBookBase::SetDefPivotStyle functions in Hancom Office 2014 VP allow remote attackers to execute arbitrary code via a crafted Hangul Hcell Document (.cell) file.
CVE-2016-4290
- EPSS 0.43%
- Veröffentlicht 06.01.2017 21:59:01
- Zuletzt bearbeitet 20.04.2025 01:37:25
When opening a Hangul HShow Document (.hpt) and processing a structure within the document, Hancom Office 2014 will attempt to allocate space for a block of data within the file. When calculating this length, the application will use a value from the...
CVE-2016-4291
- EPSS 0.43%
- Veröffentlicht 06.01.2017 21:59:01
- Zuletzt bearbeitet 20.04.2025 01:37:25
When opening a Hangul HShow Document (.hpt) and processing a structure within the document, Hancom Office 2014 will use a field from the structure in an operation that can cause the integer to overflow. This result is then used to allocate memory to ...
CVE-2016-4292
- EPSS 0.43%
- Veröffentlicht 06.01.2017 21:59:01
- Zuletzt bearbeitet 20.04.2025 01:37:25
When opening a Hangul HShow Document (.hpt) and processing a structure within the document, Hancom Office 2014 will use a static size to allocate a heap buffer yet explicitly trust a size from the file when modifying data inside of it. Due to this, a...
CVE-2016-4294
- EPSS 0.82%
- Veröffentlicht 06.01.2017 21:59:01
- Zuletzt bearbeitet 20.04.2025 01:37:25
When opening a Hangul Hcell Document (.cell) and processing a property record within the Workbook stream, Hancom Office 2014 will attempt to allocate space for an element using a length from the file. When copying user-supplied data to this buffer, h...
CVE-2016-4295
- EPSS 0.43%
- Veröffentlicht 06.01.2017 21:59:01
- Zuletzt bearbeitet 20.04.2025 01:37:25
When opening a Hangul Hcell Document (.cell) and processing a particular record within the Workbook stream, an index miscalculation leading to a heap overlow can be made to occur in Hancom Office 2014. The vulnerability occurs when processing data fo...
CVE-2016-4296
- EPSS 0.53%
- Veröffentlicht 06.01.2017 21:59:01
- Zuletzt bearbeitet 20.04.2025 01:37:25
When opening a Hangul Hcell Document (.cell) and processing a record that uses the CSSValFormat object, Hancom Office 2014 will search for an underscore ("_") character at the end of the string and write a null terminator after it. If the character i...
CVE-2016-4298
- EPSS 0.53%
- Veröffentlicht 06.01.2017 21:59:01
- Zuletzt bearbeitet 20.04.2025 01:37:25
When opening a Hangul HShow Document (.hpt) and processing a structure within the document, Hancom Office 2014 will attempt to allocate space for a list of elements using a length from the file. When calculating this length, an integer overflow can b...