Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2012-2334

Опубликовано: 19 июн. 2012
Источник: ubuntu
Приоритет: medium
CVSS2: 6.8

Описание

Integer overflow in filter/source/msfilter/msdffimp.cxx in OpenOffice.org (OOo) 3.3, 3.4 Beta, and possibly earlier, and LibreOffice before 3.5.3, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the length of an Escher graphics record in a PowerPoint (.ppt) document, which triggers a buffer overflow.

РелизСтатусПримечание
devel

not-affected

hardy

DNE

lucid

DNE

natty

released

1:3.3.4-0ubuntu1.2
oneiric

released

1:3.4.4-0ubuntu1.2
precise

not-affected

1:3.5.3-0ubuntu1
upstream

released

3.5.3

Показывать по

РелизСтатусПримечание
devel

DNE

hardy

ignored

end of life
lucid

released

1:3.2.0-7ubuntu4.3
natty

not-affected

transitional packages
oneiric

not-affected

transitional packages
precise

not-affected

transitional packages
upstream

needs-triage

Показывать по

6.8 Medium

CVSS2

Связанные уязвимости

redhat
больше 13 лет назад

Integer overflow in filter/source/msfilter/msdffimp.cxx in OpenOffice.org (OOo) 3.3, 3.4 Beta, and possibly earlier, and LibreOffice before 3.5.3, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the length of an Escher graphics record in a PowerPoint (.ppt) document, which triggers a buffer overflow.

nvd
около 13 лет назад

Integer overflow in filter/source/msfilter/msdffimp.cxx in OpenOffice.org (OOo) 3.3, 3.4 Beta, and possibly earlier, and LibreOffice before 3.5.3, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the length of an Escher graphics record in a PowerPoint (.ppt) document, which triggers a buffer overflow.

debian
около 13 лет назад

Integer overflow in filter/source/msfilter/msdffimp.cxx in OpenOffice. ...

github
больше 3 лет назад

Integer overflow in filter/source/msfilter/msdffimp.cxx in OpenOffice.org (OOo) 3.3, 3.4 Beta, and possibly earlier, and LibreOffice before 3.5.3, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the length of an Escher graphics record in a PowerPoint (.ppt) document, which triggers a buffer overflow.

CVSS3: 8.8
fstec
около 13 лет назад

Уязвимость компонента filter/source/msfilter/msdffimp.cxx модуля OpenOffice.org пакета офисных программ LibreOffice, позволяющая нарушителю получить несанкционированный доступ к конфиденциальным данным, вызвать отказ в обслуживании или оказать воздействие на целостность данных

6.8 Medium

CVSS2