CVE-2013-2189
- EPSS 3.94%
- Veröffentlicht 31.07.2013 13:20:25
- Zuletzt bearbeitet 29.04.2026 01:13:23
Apache OpenOffice.org (OOo) before 4.0 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via invalid PLCF data in a DOC document file.
CVE-2012-2665
- EPSS 7.01%
- Veröffentlicht 06.08.2012 18:55:01
- Zuletzt bearbeitet 16.06.2026 23:41:50
Multiple heap-based buffer overflows in the XML manifest encryption tag parsing functionality in OpenOffice.org and LibreOffice before 3.5.5 allow remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted Open Do...
CVE-2012-0037
- EPSS 13.68%
- Veröffentlicht 17.06.2012 03:41:40
- Zuletzt bearbeitet 16.06.2026 23:36:32
Redland Raptor (aka libraptor) before 2.0.7, as used by OpenOffice 3.3 and 3.4 Beta, LibreOffice before 3.4.6 and 3.5.x before 3.5.1, and other products, allows user-assisted remote attackers to read arbitrary files via a crafted XML external entity ...
CVE-2010-3689
- EPSS 0.65%
- Veröffentlicht 28.01.2011 22:00:05
- Zuletzt bearbeitet 16.06.2026 23:23:20
soffice in OpenOffice.org (OOo) 3.x before 3.3 places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory.
CVE-2010-3450
- EPSS 10.73%
- Veröffentlicht 28.01.2011 22:00:05
- Zuletzt bearbeitet 16.06.2026 23:22:47
Multiple directory traversal vulnerabilities in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allow remote attackers to overwrite arbitrary files via a .. (dot dot) in an entry in (1) an XSLT JAR filter description file, (2) an Extension (aka OXT) file...
CVE-2010-3451
- EPSS 10.27%
- Veröffentlicht 28.01.2011 22:00:05
- Zuletzt bearbeitet 16.06.2026 23:22:48
Use-after-free vulnerability in oowriter in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via malformed tables in an RTF document.
CVE-2010-3452
- EPSS 10.27%
- Veröffentlicht 28.01.2011 22:00:05
- Zuletzt bearbeitet 16.06.2026 23:22:48
Use-after-free vulnerability in oowriter in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via crafted tags in an RTF document.
CVE-2010-3453
- EPSS 9.67%
- Veröffentlicht 28.01.2011 22:00:05
- Zuletzt bearbeitet 16.06.2026 23:22:48
The WW8ListManager::WW8ListManager function in oowriter in OpenOffice.org (OOo) 2.x and 3.x before 3.3 does not properly handle an unspecified number of list levels in user-defined list styles in WW8 data in a Microsoft Word document, which allows re...
CVE-2010-3454
- EPSS 10.27%
- Veröffentlicht 28.01.2011 22:00:05
- Zuletzt bearbeitet 16.06.2026 23:22:48
Multiple off-by-one errors in the WW8DopTypography::ReadFromMem function in oowriter in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via crafted...
CVE-2010-4253
- EPSS 10.1%
- Veröffentlicht 28.01.2011 22:00:05
- Zuletzt bearbeitet 16.06.2026 23:24:26
Heap-based buffer overflow in Impress in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PNG file in an ODF or Microsoft Office docu...