Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2017-14226

Опубликовано: 07 сент. 2017
Источник: redhat
CVSS3: 3.3
EPSS Низкий

Описание

WP1StylesListener.cpp, WP5StylesListener.cpp, and WP42StylesListener.cpp in libwpd 0.10.1 mishandle iterators, which allows remote attackers to cause a denial of service (heap-based buffer over-read in the WPXTableList class in WPXTable.cpp). This vulnerability can be triggered in LibreOffice before 5.3.7. It may lead to suffering a remote attack against a LibreOffice application.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5libwpdWill not fix
Red Hat Enterprise Linux 6libwpdWill not fix
Red Hat Enterprise Linux 7libwpdWill not fix

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-122
https://bugzilla.redhat.com/show_bug.cgi?id=1491812libwpd: Heap-based buffer over-read in WPXTableList class

EPSS

Процентиль: 81%
0.01612
Низкий

3.3 Low

CVSS3

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 8 лет назад

WP1StylesListener.cpp, WP5StylesListener.cpp, and WP42StylesListener.cpp in libwpd 0.10.1 mishandle iterators, which allows remote attackers to cause a denial of service (heap-based buffer over-read in the WPXTableList class in WPXTable.cpp). This vulnerability can be triggered in LibreOffice before 5.3.7. It may lead to suffering a remote attack against a LibreOffice application.

CVSS3: 7.5
nvd
больше 8 лет назад

WP1StylesListener.cpp, WP5StylesListener.cpp, and WP42StylesListener.cpp in libwpd 0.10.1 mishandle iterators, which allows remote attackers to cause a denial of service (heap-based buffer over-read in the WPXTableList class in WPXTable.cpp). This vulnerability can be triggered in LibreOffice before 5.3.7. It may lead to suffering a remote attack against a LibreOffice application.

CVSS3: 7.5
debian
больше 8 лет назад

WP1StylesListener.cpp, WP5StylesListener.cpp, and WP42StylesListener.c ...

suse-cvrf
больше 8 лет назад

Security update for libwpd

suse-cvrf
больше 8 лет назад

Security update for libwpd

EPSS

Процентиль: 81%
0.01612
Низкий

3.3 Low

CVSS3