
CVE-2016-4295
https://notcve.org/view.php?id=CVE-2016-4295
06 Jan 2017 — When opening a Hangul Hcell Document (.cell) and processing a particular record within the Workbook stream, an index miscalculation leading to a heap overlow can be made to occur in Hancom Office 2014. The vulnerability occurs when processing data for a formula used to render a chart via the HncChartPlugin.hplg library. Due to a lack of bounds-checking when incrementing an index that is used for writing into a buffer for formulae, the application can be made to write pointer data outside its bounds which ca... • http://www.securityfocus.com/bid/92327 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2016-4291
https://notcve.org/view.php?id=CVE-2016-4291
06 Jan 2017 — When opening a Hangul HShow Document (.hpt) and processing a structure within the document, Hancom Office 2014 will use a field from the structure in an operation that can cause the integer to overflow. This result is then used to allocate memory to copy file data in. Due to the lack of bounds checking on the integer, the allocated memory buffer can be made to be undersized at which point the reading of file data will write outside the bounds of the buffer. This can lead to code execution under the context ... • http://www.securityfocus.com/bid/92325 • CWE-190: Integer Overflow or Wraparound •

CVE-2015-2810 – Hancom Office Hwp 2014 Integer Overflow
https://notcve.org/view.php?id=CVE-2015-2810
15 Apr 2015 — Integer overflow in the HwpApp::CHncSDS_Manager function in Hancom Office HanWord processor, as used in Hwp 2014 VP before 9.1.0.2342, HanWord Viewer 2007 and Viewer 2010 8.5.6.1158, and HwpViewer 2014 VP 9.1.0.2186, allows remote attackers to cause a denial of service (crash) and possibly "influence the program's execution flow" via a document with a large paragraph size, which triggers heap corruption. Desbordamiento de enteros en la función HwpApp::CHncSDS_Manager en el procesador Hancom Office HanWord, ... • http://seclists.org/bugtraq/2015/Apr/89 • CWE-189: Numeric Errors •

CVE-2013-7420 – Hancom Office - '.hml' File Processing Heap Buffer Overflow
https://notcve.org/view.php?id=CVE-2013-7420
12 Jan 2015 — Buffer overflow in Hancom Office 2010 SE allows remote attackers to execute arbitrary via a long string in the Text attribute in a TEXTART XML element in an HML file. Desbordamiento de buffer en Hancom Office 2010 SE permite a atacantes remotos ejecutar código arbitrario a través de una cadena larga en el atributo Text en un elemento TEXTART XML en un fichero HML. • https://www.exploit-db.com/exploits/38910 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2012-1206
https://notcve.org/view.php?id=CVE-2012-1206
20 Feb 2012 — Multiple integer overflows in Hancom Office 2010 SE 8.5.5 allow remote attackers to execute arbitrary code via large dimension values in a (1) JPG image to the ImportGR in the JPG image filter module (HncJpeg10.flt) or (2) PNG image to the PNG image filter module (HncPng10.flt), which triggers a heap-based buffer overflow. Varias vulnerabilidades de desbordamiento de enteros en Hancom Office v2010 SE v8.5.5 permite a atacantes remotos ejecutar código de su elección a través de (1) una imagen JPG demasiado g... • http://osvdb.org/78906 • CWE-189: Numeric Errors •