CVE-2018-6390
29.01.2018, 19:29
The WStr::assign function in kso.dll in Kingsoft WPS Office 10.1.0.7106 and 10.2.0.5978 does not validate the size of the source memory block before an _copy call, which allows remote attackers to cause a denial of service (access violation and application crash) via a crafted (a) web page, (b) office document, or (c) .rtf file.Enginsight
Vendor | Product | Version |
---|---|---|
wps | wps_office | 10.1.0.7106 |
wps | wps_office | 10.2.0.5978 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration