CVE-2014-3575

EUVD-2014-3555
The OLE preview generation in Apache OpenOffice before 4.1.1 and OpenOffice.org (OOo) might allow remote attackers to embed arbitrary data into documents via crafted OLE objects.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
4.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:P/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 92%
Affected Products (NVD)
VendorProductVersion
redhatenterprise_linux_desktop
7.0
redhatenterprise_linux_server
7.0
redhatenterprise_linux_workstation
7.0
apacheopenoffice
𝑥
< 4.1.1
libreofficelibreoffice
𝑥
< 4.2.6
libreofficelibreoffice
4.3.0 ≤
𝑥
< 4.3.1
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
libreoffice
lucid
dne
precise
Fixed 1:3.5.7-0ubuntu7
released
trusty
Fixed 1:4.2.6.3-0ubuntu1
released
utopic
Fixed 1:4.3.2-0ubuntu1
released
openoffice.org
lucid
ignored
precise
not-affected
trusty
dne
utopic
dne