CVE-2009-2139

Heap-based buffer overflow in svtools/source/filter.vcl/wmf/enhwmf.cxx in Go-oo 2.x and 3.x before 3.0.1, previously named ooo-build and related to OpenOffice.org (OOo), allows remote attackers to execute arbitrary code via a crafted EMF file, a similar issue to CVE-2008-2238.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
9.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:C/I:C/A:C
Base Score
CVSS 3.x
EPSS Score
Percentile: Unknown
Affected Products (NVD)
VendorProductVersion
sunopenoffice.org
2.0.0
sunopenoffice.org
2.0.3
sunopenoffice.org
2.0.4
sunopenoffice.org
2.1.0
sunopenoffice.org
2.2.0
sunopenoffice.org
2.2.1
sunopenoffice.org
2.3.0
sunopenoffice.org
2.3.1
sunopenoffice.org
2.4.0
sunopenoffice.org
2.4.1
sunopenoffice.org
2.4.2
sunopenoffice.org
2.4.3
sunopenoffice.org
3.0.0
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
openoffice.org
dapper
ignored
hardy
Fixed 1:2.4.1-1ubuntu2.2
released
intrepid
Fixed 1:2.4.1-11ubuntu2.2
released
jaunty
not-affected