Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2009-2950

Опубликовано: 16 фев. 2010
Источник: ubuntu
Приоритет: medium
EPSS Средний
CVSS2: 9.3

Описание

Heap-based buffer overflow in the GIFLZWDecompressor::GIFLZWDecompressor function in filter.vcl/lgif/decode.cxx in OpenOffice.org (OOo) before 3.2 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted GIF file, related to LZW decompression.

РелизСтатусПримечание
dapper

ignored

end of life
devel

not-affected

1:3.2.0~rc4-1ubuntu1
hardy

released

1:2.4.1-1ubuntu2.3
intrepid

released

1:2.4.1-11ubuntu2.3
jaunty

released

1:3.0.1-9ubuntu3.2
karmic

released

1:3.1.1-5ubuntu1.1
upstream

released

3.2

Показывать по

EPSS

Процентиль: 96%
0.24602
Средний

9.3 Critical

CVSS2

Связанные уязвимости

redhat
почти 16 лет назад

Heap-based buffer overflow in the GIFLZWDecompressor::GIFLZWDecompressor function in filter.vcl/lgif/decode.cxx in OpenOffice.org (OOo) before 3.2 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted GIF file, related to LZW decompression.

nvd
почти 16 лет назад

Heap-based buffer overflow in the GIFLZWDecompressor::GIFLZWDecompressor function in filter.vcl/lgif/decode.cxx in OpenOffice.org (OOo) before 3.2 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted GIF file, related to LZW decompression.

debian
почти 16 лет назад

Heap-based buffer overflow in the GIFLZWDecompressor::GIFLZWDecompress ...

github
больше 3 лет назад

Heap-based buffer overflow in the GIFLZWDecompressor::GIFLZWDecompressor function in filter.vcl/lgif/decode.cxx in OpenOffice.org (OOo) before 3.2 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted GIF file, related to LZW decompression.

CVSS3: 9.9
fstec
почти 16 лет назад

Уязвимость функции GIFLZWDecompressor офисного пакета OpenOffice, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании

EPSS

Процентиль: 96%
0.24602
Средний

9.3 Critical

CVSS2