Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2012-4233

Опубликовано: 19 нояб. 2012
Источник: nvd
CVSS2: 4.3
EPSS Низкий

Описание

LibreOffice 3.5.x before 3.5.7.2 and 3.6.x before 3.6.1, and OpenOffice.org (OOo), allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted (1) odt file to vcllo.dll, (2) ODG (Drawing document) file to svxcorelo.dll, (3) PolyPolygon record in a .wmf (Window Meta File) file embedded in a ppt (PowerPoint) file to tllo.dll, or (4) xls (Excel) file to scfiltlo.dll.

Ссылки

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:libreoffice:libreoffice:*:*:*:*:*:*:*:*
Версия до 3.6 (включая)
cpe:2.3:a:libreoffice:libreoffice:3.5:*:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.:rc1:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.0:*:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.0:rc1:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.0:rc2:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.0:rc3:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.1:*:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.1:rc1:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.1:rc2:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.2:*:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.2:rc1:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.2:rc2:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.3:*:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.3:rc1:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.3:rc2:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.4:*:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.4:rc2:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.5:*:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.5.1:*:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.5.2:*:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.5.3:*:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.6:*:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.6.1:*:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.6.2:*:*:*:*:*:*:*
cpe:2.3:a:libreoffice:libreoffice:3.5.6.3:*:*:*:*:*:*:*
cpe:2.3:a:sun:openoffice.org:-:*:*:*:*:*:*:*

EPSS

Процентиль: 85%
0.02511
Низкий

4.3 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

ubuntu
около 13 лет назад

LibreOffice 3.5.x before 3.5.7.2 and 3.6.x before 3.6.1, and OpenOffice.org (OOo), allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted (1) odt file to vcllo.dll, (2) ODG (Drawing document) file to svxcorelo.dll, (3) PolyPolygon record in a .wmf (Window Meta File) file embedded in a ppt (PowerPoint) file to tllo.dll, or (4) xls (Excel) file to scfiltlo.dll.

redhat
больше 13 лет назад

LibreOffice 3.5.x before 3.5.7.2 and 3.6.x before 3.6.1, and OpenOffice.org (OOo), allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted (1) odt file to vcllo.dll, (2) ODG (Drawing document) file to svxcorelo.dll, (3) PolyPolygon record in a .wmf (Window Meta File) file embedded in a ppt (PowerPoint) file to tllo.dll, or (4) xls (Excel) file to scfiltlo.dll.

debian
около 13 лет назад

LibreOffice 3.5.x before 3.5.7.2 and 3.6.x before 3.6.1, and OpenOffic ...

github
больше 3 лет назад

LibreOffice 3.5.x before 3.5.7.2 and 3.6.x before 3.6.1, and OpenOffice.org (OOo), allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted (1) odt file to vcllo.dll, (2) ODG (Drawing document) file to svxcorelo.dll, (3) PolyPolygon record in a .wmf (Window Meta File) file embedded in a ppt (PowerPoint) file to tllo.dll, or (4) xls (Excel) file to scfiltlo.dll.

CVSS3: 6.5
fstec
около 13 лет назад

Уязвимость множества компонентов модуля OpenOffice.org пакета офисных программ LibreOffice, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 85%
0.02511
Низкий

4.3 Medium

CVSS2

Дефекты

NVD-CWE-Other