CVE-2012-2665
- EPSS 5.02%
- Veröffentlicht 06.08.2012 18:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple heap-based buffer overflows in the XML manifest encryption tag parsing functionality in OpenOffice.org and LibreOffice before 3.5.5 allow remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted Open Do...
CVE-2012-0037
- EPSS 0.53%
- Veröffentlicht 17.06.2012 03:41:40
- Zuletzt bearbeitet 11.04.2025 00:51:21
Redland Raptor (aka libraptor) before 2.0.7, as used by OpenOffice 3.3 and 3.4 Beta, LibreOffice before 3.4.6 and 3.5.x before 3.5.1, and other products, allows user-assisted remote attackers to read arbitrary files via a crafted XML external entity ...
CVE-2010-3689
- EPSS 0.06%
- Veröffentlicht 28.01.2011 22:00:05
- Zuletzt bearbeitet 11.04.2025 00:51:21
soffice in OpenOffice.org (OOo) 3.x before 3.3 places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory.
CVE-2010-3450
- EPSS 2.02%
- Veröffentlicht 28.01.2011 22:00:05
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple directory traversal vulnerabilities in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allow remote attackers to overwrite arbitrary files via a .. (dot dot) in an entry in (1) an XSLT JAR filter description file, (2) an Extension (aka OXT) file...
CVE-2010-3451
- EPSS 9.09%
- Veröffentlicht 28.01.2011 22:00:05
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in oowriter in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via malformed tables in an RTF document.
CVE-2010-3452
- EPSS 7.11%
- Veröffentlicht 28.01.2011 22:00:05
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in oowriter in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via crafted tags in an RTF document.
CVE-2010-3453
- EPSS 7.67%
- Veröffentlicht 28.01.2011 22:00:05
- Zuletzt bearbeitet 11.04.2025 00:51:21
The WW8ListManager::WW8ListManager function in oowriter in OpenOffice.org (OOo) 2.x and 3.x before 3.3 does not properly handle an unspecified number of list levels in user-defined list styles in WW8 data in a Microsoft Word document, which allows re...
CVE-2010-3454
- EPSS 7.02%
- Veröffentlicht 28.01.2011 22:00:05
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple off-by-one errors in the WW8DopTypography::ReadFromMem function in oowriter in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via crafted...
CVE-2010-4253
- EPSS 5.18%
- Veröffentlicht 28.01.2011 22:00:05
- Zuletzt bearbeitet 11.04.2025 00:51:21
Heap-based buffer overflow in Impress in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PNG file in an ODF or Microsoft Office docu...
CVE-2010-4643
- EPSS 3.46%
- Veröffentlicht 28.01.2011 22:00:05
- Zuletzt bearbeitet 11.04.2025 00:51:21
Heap-based buffer overflow in Impress in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted Truevision TGA (TARGA) file in an ODF or Mi...