Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2010-2935

Опубликовано: 25 авг. 2010
Источник: ubuntu
Приоритет: low
CVSS2: 9.3

Описание

simpress.bin in the Impress module in OpenOffice.org (OOo) 2.x and 3.x before 3.3 does not properly handle integer values associated with dictionary property items, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PowerPoint document that triggers a heap-based buffer overflow, related to an "integer truncation error."

РелизСтатусПримечание
dapper

DNE

devel

not-affected

hardy

DNE

intrepid

DNE

jaunty

DNE

karmic

DNE

lucid

DNE

maverick

DNE

natty

not-affected

oneiric

not-affected

Показывать по

РелизСтатусПримечание
dapper

ignored

end of life
devel

DNE

hardy

released

1:2.4.1-1ubuntu2.5
jaunty

ignored

end of life
karmic

released

1:3.1.1-5ubuntu1.3
lucid

released

1:3.2.0-7ubuntu4.2
maverick

released

1:3.2.1-7ubuntu1.1
natty

not-affected

transitional package
oneiric

not-affected

transitional package
precise

not-affected

transitional package

Показывать по

9.3 Critical

CVSS2

Связанные уязвимости

redhat
больше 15 лет назад

simpress.bin in the Impress module in OpenOffice.org (OOo) 2.x and 3.x before 3.3 does not properly handle integer values associated with dictionary property items, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PowerPoint document that triggers a heap-based buffer overflow, related to an "integer truncation error."

nvd
больше 15 лет назад

simpress.bin in the Impress module in OpenOffice.org (OOo) 2.x and 3.x before 3.3 does not properly handle integer values associated with dictionary property items, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PowerPoint document that triggers a heap-based buffer overflow, related to an "integer truncation error."

debian
больше 15 лет назад

simpress.bin in the Impress module in OpenOffice.org (OOo) 2.x and 3.x ...

github
больше 3 лет назад

simpress.bin in the Impress module in OpenOffice.org (OOo) 2.x and 3.x before 3.3 does not properly handle integer values associated with dictionary property items, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PowerPoint document that triggers a heap-based buffer overflow, related to an "integer truncation error."

CVSS3: 9.9
fstec
больше 15 лет назад

Уязвимость модуля Impress офисного пакета OpenOffice, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании

9.3 Critical

CVSS2

Уязвимость CVE-2010-2935