CVE-2018-10120
- EPSS 0.5%
- Veröffentlicht 16.04.2018 09:58:10
- Zuletzt bearbeitet 21.11.2024 03:40:52
The SwCTBWrapper::Read function in sw/source/filter/ww8/ww8toolbar.cxx in LibreOffice before 5.4.6.1 and 6.x before 6.0.2.1 does not validate a customizations index, which allows remote attackers to cause a denial of service (heap-based buffer overfl...
CVE-2018-10119
- EPSS 0.55%
- Veröffentlicht 16.04.2018 09:58:10
- Zuletzt bearbeitet 21.11.2024 03:40:52
sot/source/sdstor/stgstrms.cxx in LibreOffice before 5.4.5.1 and 6.x before 6.0.1.1 uses an incorrect integer data type in the StgSmallStrm class, which allows remote attackers to cause a denial of service (use-after-free with write access) or possib...
CVE-2018-6871
- EPSS 42.68%
- Veröffentlicht 09.02.2018 06:29:00
- Zuletzt bearbeitet 21.11.2024 04:11:20
LibreOffice before 5.4.5 and 6.x before 6.0.1 allows remote attackers to read arbitrary files via =WEBSERVICE calls in a document, which use the COM.MICROSOFT.WEBSERVICE function.
CVE-2017-14226
- EPSS 1.61%
- Veröffentlicht 09.09.2017 08:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
WP1StylesListener.cpp, WP5StylesListener.cpp, and WP42StylesListener.cpp in libwpd 0.10.1 mishandle iterators, which allows remote attackers to cause a denial of service (heap-based buffer over-read in the WPXTableList class in WPXTable.cpp). This vu...
CVE-2017-8358
- EPSS 0.51%
- Veröffentlicht 30.04.2017 17:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
LibreOffice before 2017-03-17 has an out-of-bounds write caused by a heap-based buffer overflow related to the ReadJPEG function in vcl/source/filter/jpeg/jpegc.cxx.
CVE-2017-7882
- EPSS 1.22%
- Veröffentlicht 15.04.2017 16:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
LibreOffice before 2017-03-14 has an out-of-bounds write related to the HWPFile::TagsRead function in hwpfilter/source/hwpfile.cxx.
CVE-2017-7870
- EPSS 1.35%
- Veröffentlicht 14.04.2017 04:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
LibreOffice before 2017-01-02 has an out-of-bounds write caused by a heap-based buffer overflow related to the tools::Polygon::Insert function in tools/source/generic/poly.cxx.
CVE-2017-7856
- EPSS 1.78%
- Veröffentlicht 14.04.2017 04:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
LibreOffice before 2017-03-11 has an out-of-bounds write caused by a heap-based buffer overflow in the SVMConverter::ImplConvertFromSVM1 function in vcl/source/gdi/svmconverter.cxx.
CVE-2016-10327
- EPSS 0.61%
- Veröffentlicht 14.04.2017 04:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
LibreOffice before 2016-12-22 has an out-of-bounds write caused by a heap-based buffer overflow related to the EnhWMFReader::ReadEnhWMF function in vcl/source/filter/wmf/enhwmf.cxx.
CVE-2016-4324
- EPSS 0.67%
- Veröffentlicht 08.07.2016 19:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
Use-after-free vulnerability in LibreOffice before 5.1.4 allows remote attackers to execute arbitrary code via a crafted RTF file, related to stylesheet and superscript tokens.