Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2011-2713

Опубликовано: 04 окт. 2011
Источник: redhat
CVSS2: 4.3
EPSS Низкий

Описание

oowriter in OpenOffice.org 3.3.0 and LibreOffice before 3.4.3 allows user-assisted remote attackers to cause a denial of service (crash) via a crafted DOC file that triggers an out-of-bounds read in the DOC sprm parser.

Отчет

This issue results in an OOB read which is not exploitable for arbitrary code execution and can simply cause a crash. We do not consider this as a security issue.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 4openoffice.orgNot affected
Red Hat Enterprise Linux 5openoffice.orgNot affected
Red Hat Enterprise Linux 6openoffice.orgNot affected

Показывать по

Дополнительная информация

Дефект:
CWE-125
https://bugzilla.redhat.com/show_bug.cgi?id=725668openoffice.org: Out-of-bounds read in DOC sprm parser

EPSS

Процентиль: 85%
0.02876
Низкий

4.3 Medium

CVSS2

Связанные уязвимости

ubuntu
почти 15 лет назад

oowriter in OpenOffice.org 3.3.0 and LibreOffice before 3.4.3 allows user-assisted remote attackers to cause a denial of service (crash) via a crafted DOC file that triggers an out-of-bounds read in the DOC sprm parser.

nvd
почти 15 лет назад

oowriter in OpenOffice.org 3.3.0 and LibreOffice before 3.4.3 allows user-assisted remote attackers to cause a denial of service (crash) via a crafted DOC file that triggers an out-of-bounds read in the DOC sprm parser.

debian
почти 15 лет назад

oowriter in OpenOffice.org 3.3.0 and LibreOffice before 3.4.3 allows u ...

github
около 4 лет назад

oowriter in OpenOffice.org 3.3.0 and LibreOffice before 3.4.3 allows user-assisted remote attackers to cause a denial of service (crash) via a crafted DOC file that triggers an out-of-bounds read in the DOC sprm parser.

CVSS3: 6.5
fstec
почти 15 лет назад

Уязвимость компонента OpenOffice.org пакета офисных программ LibreOffice, связанная с выходом операции за допустимые границы буфера данных, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 85%
0.02876
Низкий

4.3 Medium

CVSS2