GdiDrawHoriLineIAlt in Kingsoft WPS Office before 11.2.0.9403 allows remote heap corruption via a crafted PLTE chunk in PNG data within a Word document. This is related to QBrush::setMatrix in gui/painting/qbrush.cpp in Qt 4.x.
Advisories
Source ID Title
EUVD EUVD EUVD-2020-17979 GdiDrawHoriLineIAlt in Kingsoft WPS Office before 11.2.0.9403 allows remote heap corruption via a crafted PLTE chunk in PNG data within a Word document. This is related to QBrush::setMatrix in gui/painting/qbrush.cpp in Qt 4.x.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-04T15:33:05.445Z

Reserved: 2020-09-13T00:00:00

Link: CVE-2020-25291

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-09-13T20:15:10.187

Modified: 2024-11-21T05:17:52.833

Link: CVE-2020-25291

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses