Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2009-0200

Опубликовано: 02 сент. 2009
Источник: nvd
CVSS2: 9.3
EPSS Средний

Описание

Integer underflow in OpenOffice.org (OOo) before 3.1.1 and StarOffice/StarSuite 7, 8, and 9 might allow remote attackers to execute arbitrary code via crafted records in the document table of a Word document, leading to a heap-based buffer overflow.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:openoffice:openoffice.org:*:*:*:*:*:*:*:*
Версия до 3.1 (включая)
cpe:2.3:a:openoffice:openoffice.org:1.0-ru:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.0.0:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.0.1:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.0.2:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.0.3.1:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.1:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.1:beta:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.1:beta2:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.1:rc1:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.1:rc3:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.1.1:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.1.2:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.1.3:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.1.4:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.1.5:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.9.84:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.9.87:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.9.91:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.9.93:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.9.95:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.9.100:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.9.104:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.9.113:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.9.118:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.9.122:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.9.130:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.9.156:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.9.680:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:2.0:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:2.0:beta2:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:2.0.1:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:2.0.2:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:2.0.2:rc1:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:2.0.2:rc2:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:2.0.3:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:2.0.4:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:2.1:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:2.1.152:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:2.1.154:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:2.2:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:2.2.1:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:2.3:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:2.3.1:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:2.4:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:2.4.1:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:2.4.1:*:64-bit:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:3.01:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:605b:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:609:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:614:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:619:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:627:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:633:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:638:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:638c:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:641b:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:641d:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:643:*:*:*:*:*:*:*

EPSS

Процентиль: 93%
0.10842
Средний

9.3 Critical

CVSS2

Дефекты

CWE-189

Связанные уязвимости

ubuntu
больше 16 лет назад

Integer underflow in OpenOffice.org (OOo) before 3.1.1 and StarOffice/StarSuite 7, 8, and 9 might allow remote attackers to execute arbitrary code via crafted records in the document table of a Word document, leading to a heap-based buffer overflow.

redhat
больше 16 лет назад

Integer underflow in OpenOffice.org (OOo) before 3.1.1 and StarOffice/StarSuite 7, 8, and 9 might allow remote attackers to execute arbitrary code via crafted records in the document table of a Word document, leading to a heap-based buffer overflow.

debian
больше 16 лет назад

Integer underflow in OpenOffice.org (OOo) before 3.1.1 and StarOffice/ ...

github
больше 3 лет назад

Integer underflow in OpenOffice.org (OOo) before 3.1.1 and StarOffice/StarSuite 7, 8, and 9 might allow remote attackers to execute arbitrary code via crafted records in the document table of a Word document, leading to a heap-based buffer overflow.

CVSS3: 9.9
fstec
больше 16 лет назад

Уязвимость офисного пакета OpenOffice, связанная с целочисленным переполнением через созданные записи в талице документа, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании

EPSS

Процентиль: 93%
0.10842
Средний

9.3 Critical

CVSS2

Дефекты

CWE-189