Back to list
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Hancom Office '.hml' file heap-based buffer overflow
Dec 17 2013 09:21AM
diroverflow gmail com
There is a vulnerability in Hancom Office 2010 SE, which can be exploited by malicious people to compromise a user's system.
'.hml' is a type of XML document files which is defined by Hancom. Contructing a long TEXTART tag will cause a heap-based buffer overflow. Such as:
[ more ]
Copyright 2010, SecurityFocus