6.8

CVE-2012-2334

Exploit

Integer overflow in filter/source/msfilter/msdffimp.cxx in OpenOffice.org (OOo) 3.3, 3.4 Beta, and possibly earlier, and LibreOffice before 3.5.3, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the length of an Escher graphics record in a PowerPoint (.ppt) document, which triggers a buffer overflow.

Data is provided by the National Vulnerability Database (NVD)
ApacheOpenoffice.Org Version3.3
ApacheOpenoffice.Org Version3.4 Updatebeta
LibreofficeLibreoffice Version <= 3.5.2
LibreofficeLibreoffice Version3.3.0
LibreofficeLibreoffice Version3.3.1
LibreofficeLibreoffice Version3.3.2
LibreofficeLibreoffice Version3.3.3
LibreofficeLibreoffice Version3.3.4
LibreofficeLibreoffice Version3.4.0
LibreofficeLibreoffice Version3.4.1
LibreofficeLibreoffice Version3.4.2
LibreofficeLibreoffice Version3.4.5
LibreofficeLibreoffice Version3.5
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 11.88% 0.931
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 6.8 8.6 6.4
AV:N/AC:M/Au:N/C:P/I:P/A:P