CVE-2008-2237

Heap-based buffer overflow in OpenOffice.org (OOo) 2.x before 2.4.2 allows remote attackers to execute arbitrary code via a crafted WMF file associated with a StarOffice/StarSuite document.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
9.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:C/I:C/A:C
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 93%
VendorProductVersion
openofficeopenoffice.org
𝑥
≤ 2.4.1
openofficeopenoffice.org
2.0
openofficeopenoffice.org
2.0.2
openofficeopenoffice.org
2.0.3
openofficeopenoffice.org
2.0.4
openofficeopenoffice.org
2.1
openofficeopenoffice.org
2.2
openofficeopenoffice.org
2.2.1
openofficeopenoffice.org
2.3
openofficeopenoffice.org
2.3.1
openofficeopenoffice.org
2.4
openofficeopenoffice.org
2.4.1
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
openoffice.org
intrepid
Fixed 1:2.4.1-11ubuntu2.1
released
hardy
Fixed 1:2.4.1-1ubuntu2.1
released
gutsy
Fixed 1:2.3.0-1ubuntu5.5
released
dapper
Fixed 2.0.2-2ubuntu12.7
released
openoffice.org-amd64
intrepid
dne
hardy
dne
gutsy
dne
dapper
Fixed 2.0.2-2ubuntu12.7-2
released
References