Naver · Naver Cloud Explorer · CVE-2019-13156
**Name of the Vulnerable Software and Affected Versions**
Naver Cloud Explorer version 1.2.2
**Description**
The issue is related to a stack-based buffer overflow in the NDrive(1.2.2).sys component. This overflow occurs when reading data from an IOCTL handle, allowing attackers to cause a denial of service.
**Recommendations**
For version 1.2.2, consider restricting access to the NDrive(1.2.2).sys component until a patch is available. As a temporary workaround, avoid using the IOCTL handle that triggers the buffer overflow to minimize the risk of exploitation.