Korean
<< Back
VID 50250
Severity 40
Port 139,445
Protocol TCP
Class SMB
Detailed Description The version of Hancom Office 2010 SE installed on the remote host is a version 8.5.5 and earlier. Multiple integer overflows in Hancom Office 2010 SE 8.5.5 allow remote attackers to execute arbitrary code via large dimension values in a JPG image to the ImportGR in the JPG image filter module (HncJpeg10.flt) or PNG image to the PNG image filter module (HncPng10.flt), which triggers a heap-based buffer overflow.

* Note: This check requires an account with administrative privileges which can log into the host to scan. Absence of these conditions will result in the check not being performed and a False Negative for all vulnerable hosts.

* References:
https://exchange.xforce.ibmcloud.com/vulnerabilities/73026

* Platforms Affected:
Hancom Office 2010 SE versions 8.5.5 and earlier.
Microsoft Windows Any version
Recommendation Update to the latest version according to the information provided on the website.
https://www.hancom.com/cs_center/csDownload.do
Related URL CVE-2012-1206 (CVE)
Related URL (SecurityFocus)
Related URL (ISS)