6.8
CVSSv2

CVE-2007-5746

Published: 17/04/2008 Updated: 29/09/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 720
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Integer overflow in OpenOffice.org prior to 2.4 allows remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code via an EMF file with a crafted EMR_STRETCHBLT record, which triggers a heap-based buffer overflow.

Vulnerable Product Search on Vulmon Subscribe to Product

openoffice openoffice.org 2.1

openoffice openoffice.org 2.2

openoffice openoffice.org 2.3.1

openoffice openoffice.org 2.0.3

openoffice openoffice.org 2.2.1

openoffice openoffice.org 2.3

Vendor Advisories

It was discovered that arbitrary Java methods were not filtered out when opening databases in OpenOfficeorg If a user were tricked into running a specially crafted query, a remote attacker could execute arbitrary Java with user privileges (CVE-2007-4575) ...
Several security related problems have been discovered in OpenOfficeorg, the free office suite The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2007-5745, CVE-2007-5747 Several bugs have been discovered in the way OpenOfficeorg parses Quattro Pro files that may lead to a overflow in the heap po ...

References

CWE-189http://www.openoffice.org/security/bulletin.htmlhttp://www.debian.org/security/2008/dsa-1547http://www.redhat.com/support/errata/RHSA-2008-0175.htmlhttp://www.redhat.com/support/errata/RHSA-2008-0176.htmlhttp://secunia.com/advisories/29864http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=692http://www.openoffice.org/security/cves/CVE-2007-5746.htmlhttps://www.redhat.com/archives/fedora-package-announce/2008-April/msg00448.htmlhttp://secunia.com/advisories/29913http://www.openoffice.org/security/cves/CVE-2007-4770.htmlhttp://www.openoffice.org/security/cves/CVE-2007-5745.htmlhttp://www.mandriva.com/security/advisories?name=MDVSA-2008:090http://sunsolve.sun.com/search/document.do?assetkey=1-66-231661-1http://www.novell.com/linux/security/advisories/2008_23_openoffice.htmlhttp://www.securityfocus.com/bid/28819http://www.securitytracker.com/id?1019892http://secunia.com/advisories/29852http://secunia.com/advisories/29910http://secunia.com/advisories/29844http://secunia.com/advisories/29871http://secunia.com/advisories/29987http://www.mandriva.com/security/advisories?name=MDVSA-2008:095http://secunia.com/advisories/30100http://www.ubuntu.com/usn/usn-609-1http://security.gentoo.org/glsa/glsa-200805-16.xmlhttp://secunia.com/advisories/30179http://www.vupen.com/english/advisories/2008/1253/referenceshttp://www.vupen.com/english/advisories/2008/1375/referenceshttps://exchange.xforce.ibmcloud.com/vulnerabilities/41861https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10249https://nvd.nist.govhttps://usn.ubuntu.com/609-1/