CVE-2023-32541

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Sep 27, 2023
Updated: Sep 28, 2023
CWE ID 416

Summary

CVE-2023-32541 is a use-after-free vulnerability affecting Hancom Office 2020 HWord 11.0.0.7520. This issue is found in the footerr functionality and can be exploited with a specially crafted .doc file. When a user opens the malformed file, it triggers the vulnerability, potentially allowing an attacker to gain unauthorized access or execute arbitrary code. Consequently, users should be cautious when opening untrusted files to avoid potential security risks. It is recommended that Hancom Office 2020 users apply the available patch to mitigate this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share