Show filters
92 Total Results
Displaying 21-30 of 92
Sort by:
Attacker Value
Unknown
CVE-2017-9806
Disclosure Date: November 20, 2017 (last updated November 26, 2024)
A vulnerability in the OpenOffice Writer DOC file parser before 4.1.4, and specifically in the WW8Fonts Constructor, allows attackers to craft malicious documents that cause denial of service (memory corruption and application crash) potentially resulting in arbitrary code execution.
0
Attacker Value
Unknown
CVE-2016-6804
Disclosure Date: November 20, 2017 (last updated November 26, 2024)
The Apache OpenOffice installer (versions prior to 4.1.3, including some branded as OpenOffice.org) for Windows contains a defective operation that allows execution of arbitrary code with elevated privileges. This requires that the location in which the installer is run has been previously poisoned by a file that impersonates a dynamic-link library that the installer depends upon.
0
Attacker Value
Unknown
CVE-2016-6803
Disclosure Date: November 13, 2017 (last updated November 26, 2024)
An installer defect known as an "unquoted Windows search path vulnerability" affected the Apache OpenOffice before 4.1.3 installers for Windows. The PC must have previously been infected by a Trojan Horse application (or user) running with administrative privilege. Any installer with the unquoted search path vulnerability becomes a delayed trigger for the exploit.
0
Attacker Value
Unknown
CVE-2016-1513
Disclosure Date: August 05, 2016 (last updated November 25, 2024)
The Impress tool in Apache OpenOffice 4.1.2 and earlier allows remote attackers to cause a denial of service (out-of-bounds read or write) or execute arbitrary code via crafted MetaActions in an (1) ODP or (2) OTP file.
0
Attacker Value
Unknown
CVE-2015-5212
Disclosure Date: November 10, 2015 (last updated October 05, 2023)
Integer underflow in LibreOffice before 4.4.5 and Apache OpenOffice before 4.1.2, when the configuration setting "Load printer settings with the document" is enabled, allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via crafted PrinterSetup data in an ODF document.
0
Attacker Value
Unknown
CVE-2015-4551
Disclosure Date: November 10, 2015 (last updated October 05, 2023)
LibreOffice before 4.4.5 and Apache OpenOffice before 4.1.2 uses the stored LinkUpdateMode configuration information in OpenDocument Format files and templates when handling links, which might allow remote attackers to obtain sensitive information via a crafted document, which embeds data from local files into (1) Calc or (2) Writer.
0
Attacker Value
Unknown
CVE-2015-5213
Disclosure Date: November 10, 2015 (last updated October 05, 2023)
Integer overflow in LibreOffice before 4.4.5 and Apache OpenOffice before 4.1.2 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via a long DOC file, which triggers a buffer overflow.
0
Attacker Value
Unknown
CVE-2015-5214
Disclosure Date: November 10, 2015 (last updated October 05, 2023)
LibreOffice before 4.4.6 and 5.x before 5.0.1 and Apache OpenOffice before 4.1.2 allows remote attackers to cause a denial of service (memory corruption and application crash) or execute arbitrary code via an index to a non-existent bookmark in a DOC file.
0
Attacker Value
Unknown
CVE-2015-1774
Disclosure Date: April 28, 2015 (last updated October 05, 2023)
The HWP filter in LibreOffice before 4.3.7 and 4.4.x before 4.4.2 and Apache OpenOffice before 4.1.2 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted HWP document, which triggers an out-of-bounds write.
0
Attacker Value
Unknown
CVE-2014-3575
Disclosure Date: August 27, 2014 (last updated October 05, 2023)
The OLE preview generation in Apache OpenOffice before 4.1.1 and OpenOffice.org (OOo) might allow remote attackers to embed arbitrary data into documents via crafted OLE objects.
0