Show filters
176 Total Results
Displaying 111-120 of 176
Sort by:
Attacker Value
Unknown
CVE-2010-3454
Disclosure Date: January 28, 2011 (last updated October 04, 2023)
Multiple off-by-one errors in the WW8DopTypography::ReadFromMem function in oowriter in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via crafted typography information in a Microsoft Word .DOC file that triggers an out-of-bounds write.
0
Attacker Value
Unknown
CVE-2010-3451
Disclosure Date: January 28, 2011 (last updated October 04, 2023)
Use-after-free vulnerability in oowriter in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via malformed tables in an RTF document.
0
Attacker Value
Unknown
CVE-2010-4008
Disclosure Date: December 07, 2010 (last updated October 04, 2023)
libxml2 before 2.7.8, as used in Google Chrome before 7.0.517.44, Apple Safari 5.0.2 and earlier, and other products, reads from invalid memory locations during processing of malformed XPath expressions, which allows context-dependent attackers to cause a denial of service (application crash) via a crafted XML document.
0
Attacker Value
Unknown
CVE-2010-0395
Disclosure Date: June 10, 2010 (last updated October 04, 2023)
OpenOffice.org 2.x and 3.0 before 3.2.1 allows user-assisted remote attackers to bypass Python macro security restrictions and execute arbitrary Python code via a crafted OpenDocument Text (ODT) file that triggers code execution when the macro directory structure is previewed.
0
Attacker Value
Unknown
CVE-2010-1257
Disclosure Date: June 08, 2010 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in the toStaticHTML API, as used in Microsoft Office InfoPath 2003 SP3, 2007 SP1, and 2007 SP2; Office SharePoint Server 2007 SP1 and SP2; SharePoint Services 3.0 SP1 and SP2; and Internet Explorer 8 allows remote attackers to inject arbitrary web script or HTML via vectors related to sanitization.
0
Attacker Value
Unknown
CVE-2009-2950
Disclosure Date: February 16, 2010 (last updated October 04, 2023)
Heap-based buffer overflow in the GIFLZWDecompressor::GIFLZWDecompressor function in filter.vcl/lgif/decode.cxx in OpenOffice.org (OOo) before 3.2 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted GIF file, related to LZW decompression.
0
Attacker Value
Unknown
CVE-2010-0136
Disclosure Date: February 16, 2010 (last updated October 04, 2023)
OpenOffice.org (OOo) 2.0.4, 2.4.1, and 3.1.1 does not properly enforce Visual Basic for Applications (VBA) macro security settings, which allows remote attackers to run arbitrary macros via a crafted document.
0
Attacker Value
Unknown
CVE-2009-3302
Disclosure Date: February 16, 2010 (last updated October 04, 2023)
filter/ww8/ww8par2.cxx in OpenOffice.org (OOo) before 3.2 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted sprmTSetBrc table property modifier in a Word document, related to a "boundary error flaw."
0
Attacker Value
Unknown
CVE-2009-3301
Disclosure Date: February 16, 2010 (last updated October 04, 2023)
Integer underflow in filter/ww8/ww8par2.cxx in OpenOffice.org (OOo) before 3.2 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted sprmTDefTable table property modifier in a Word document.
0
Attacker Value
Unknown
CVE-2009-2949
Disclosure Date: February 16, 2010 (last updated October 04, 2023)
Integer overflow in the XPMReader::ReadXPM function in filter.vcl/ixpm/svt_xpmread.cxx in OpenOffice.org (OOo) before 3.2 allows remote attackers to execute arbitrary code via a crafted XPM file that triggers a heap-based buffer overflow.
0