Vulnerabilities > Kingsoft

DATE CVE VULNERABILITY TITLE RISK
2014-03-24 CVE-2012-4886 Buffer Errors vulnerability in Kingsoft Office 2012 8.1.0.3238
Stack-based buffer overflow in wpsio.dll in Kingsoft WPS Office 2012 possibly 8.1.0.3238 allows remote attackers to execute arbitrary code via a long BSTR string.
network
low complexity
kingsoft CWE-119
critical
10.0
2013-11-22 CVE-2013-5999 Cryptographic Issues vulnerability in Kingsoft Kdrive 1.21.0.1878
Kingsoft KDrive Personal before 1.21.0.1880 on Windows does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
network
kingsoft CWE-310
5.8
2013-09-10 CVE-2013-3934 Buffer Errors vulnerability in Kingsoft Office 2012 and Writer 2012
Stack-based buffer overflow in Kingsoft Writer 2012 8.1.0.3030, as used in Kingsoft Office 2013 before 9.1.0.4256, allows remote attackers to execute arbitrary code via a long font name in a WPS file.
network
kingsoft CWE-119
critical
9.3
2013-07-29 CVE-2013-0723 Buffer Errors vulnerability in Kingsoft Spreadsheets 2012 8.1.0.3030
Multiple heap-based buffer overflows in etxrw.dll in Kingsoft Spreadsheets 2012 8.1.0.3030 allow remote attackers to cause a denial of service (memory corruption and crash) or possibly execute arbitrary code via a crafted spreadsheet file.
network
kingsoft CWE-119
critical
9.3
2013-03-05 CVE-2013-0710 Buffer Errors vulnerability in Kingsoft Writer 2007 and Writer 2010
Buffer overflow in Kingsoft Writer 2007 and 2010 before 2724 allows remote attackers to execute arbitrary code via a crafted RTF document.
network
kingsoft CWE-119
critical
9.3
2012-03-02 CVE-2012-0321 Local Denial Of Service vulnerability in Kingsoft Internet Security 2011
Unspecified vulnerability in the device driver in Kingsoft Internet Security 2011 allows local users to cause a denial of service via a crafted application.
local
low complexity
kingsoft
2.1
2011-01-20 CVE-2011-0515 Denial of Service vulnerability in Kingsoft Antivirus 'KisKrnl.sys' Driver
KisKrnl.sys 2011.1.13.89 and earlier in Kingsoft AntiVirus 2011 SP5.2 allows local users to cause a denial of service (crash) via a crafted request that is not properly handled by the KiFastCallEntry hook.
local
low complexity
kingsoft kingsoftsecurity
2.1
2010-09-15 CVE-2010-3396 Buffer Errors vulnerability in Kingsoft Antivirus 2010.04.26.648
Buffer overflow in kavfm.sys in Kingsoft Antivirus 2010.04.26.648 and earlier allows local users to execute arbitrary code via a long argument to IOCTL 0x80030004.
local
low complexity
kingsoft CWE-119
7.2
2010-05-24 CVE-2010-2031 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Kingsoft Webshield
KAVSafe.sys 2010.4.14.609 and earlier, as used in Kingsoft Webshield 3.5.1.2 and earlier, allows local users to overwrite arbitrary kernel memory via a crafted request to IOCTL 0x830020d4 on the KAVSafe device.
local
low complexity
kingsoft CWE-119
7.2
2008-03-12 CVE-2008-1307 Buffer Errors vulnerability in Kingsoft Antivirus Online Update Module 2007.12.29.29
Heap-based buffer overflow in the KUpdateObj2 Class ActiveX control in UpdateOcx2.dll in Beijing KingSoft Antivirus Online Update Module 2007.12.29.29 allows remote attackers to execute arbitrary code via a long argument to the SetUninstallName method.
network
low complexity
kingsoft CWE-119
critical
10.0