CVE-2018-6390

CVE-2018-6390

The WStr::assign function in kso.dll in Kingsoft WPS Office 10.1.0.7106 and 10.2.0.5978 does not validate the size of the source memory block before an _copy call, which allows remote attackers to cause a denial of service (access violation and application crash) via a crafted (a) web page, (b) office document, or (c) .rtf file.

Source: CVE-2018-6390

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다