Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2012-4233

Опубликовано: 19 нояб. 2012
Источник: nvd
CVSS2: 4.3
EPSS Низкий

Описание

LibreOffice 3.5.x before 3.5.7.2 and 3.6.x before 3.6.1, and OpenOffice.org (OOo), allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted (1) odt file to vcllo.dll, (2) ODG (Drawing document) file to svxcorelo.dll, (3) PolyPolygon record in a .wmf (Window Meta File) file embedded in a ppt (PowerPoint) file to tllo.dll, or (4) xls (Excel) file to scfiltlo.dll.

Ссылки

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:libreoffice:libreoffice:*:*:*:*:*:*:*:*
Версия до 3.6 (включая)
cpe:2.3:a:libreoffice:libreoffice:3.5:*:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.:rc1:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.0:*:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.0:rc1:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.0:rc2:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.0:rc3:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.1:*:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.1:rc1:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.1:rc2:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.2:*:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.2:rc1:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.2:rc2:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.3:*:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.3:rc1:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.3:rc2:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.4:*:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.4:rc2:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.5:*:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.5.1:*:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.5.2:*:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.5.3:*:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.6:*:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.6.1:*:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.6.2:*:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.6.3:*:*:*:*:*:*:*
cpe:2.3:a:sun:openoffice.org:-:*:*:*:*:*:*:*

EPSS

Процентиль: 85%
0.02511
Низкий

4.3 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

ubuntu
больше 12 лет назад

LibreOffice 3.5.x before 3.5.7.2 and 3.6.x before 3.6.1, and OpenOffice.org (OOo), allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted (1) odt file to vcllo.dll, (2) ODG (Drawing document) file to svxcorelo.dll, (3) PolyPolygon record in a .wmf (Window Meta File) file embedded in a ppt (PowerPoint) file to tllo.dll, or (4) xls (Excel) file to scfiltlo.dll.

redhat
почти 13 лет назад

LibreOffice 3.5.x before 3.5.7.2 and 3.6.x before 3.6.1, and OpenOffice.org (OOo), allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted (1) odt file to vcllo.dll, (2) ODG (Drawing document) file to svxcorelo.dll, (3) PolyPolygon record in a .wmf (Window Meta File) file embedded in a ppt (PowerPoint) file to tllo.dll, or (4) xls (Excel) file to scfiltlo.dll.

debian
больше 12 лет назад

LibreOffice 3.5.x before 3.5.7.2 and 3.6.x before 3.6.1, and OpenOffic ...

github
около 3 лет назад

LibreOffice 3.5.x before 3.5.7.2 and 3.6.x before 3.6.1, and OpenOffice.org (OOo), allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted (1) odt file to vcllo.dll, (2) ODG (Drawing document) file to svxcorelo.dll, (3) PolyPolygon record in a .wmf (Window Meta File) file embedded in a ppt (PowerPoint) file to tllo.dll, or (4) xls (Excel) file to scfiltlo.dll.

CVSS3: 6.5
fstec
больше 12 лет назад

Уязвимость множества компонентов модуля OpenOffice.org пакета офисных программ LibreOffice, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 85%
0.02511
Низкий

4.3 Medium

CVSS2

Дефекты

NVD-CWE-Other