CVE-2012-2665
06.08.2012, 18:55
Multiple heap-based buffer overflows in the XML manifest encryption tag parsing functionality in OpenOffice.org and LibreOffice before 3.5.5 allow remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted Open Document Text (.odt) file with (1) a child tag within an incorrect parent tag, (2) duplicate tags, or (3) a Base64 ChecksumAttribute whose length is not evenly divisible by four.Enginsight
Vendor | Product | Version |
---|---|---|
apache | openoffice | 𝑥 < 3.4.1 |
libreoffice | libreoffice | 𝑥 < 3.5.5 |
canonical | ubuntu_linux | 10.04 |
canonical | ubuntu_linux | 11.04 |
canonical | ubuntu_linux | 11.10 |
canonical | ubuntu_linux | 12.04 |
debian | debian_linux | 6.0 |
debian | debian_linux | 7.0 |
redhat | enterprise_linux | 6.0 |
redhat | enterprise_linux_desktop | 6.0 |
redhat | enterprise_linux_for_ibm_z_systems | 6.0 |
redhat | enterprise_linux_for_power_big_endian | 6.0 |
redhat | enterprise_linux_server | 6.0 |
redhat | enterprise_linux_server_from_rhui_6 | 6.0 |
redhat | enterprise_linux_workstation | 6.0 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References