Integer overflow in the rtl_allocateMemory function in sal/rtl/source/alloc_global.c in OpenOffice.org (OOo) 2.0 up to and including 2.4 allows remote malicious users to execute arbitrary code via a crafted file that triggers a heap-based buffer overflow.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
openoffice openoffice.org 2.4 |
||
openoffice openoffice.org 2.0 |
||
openoffice openoffice.org 2.1 |
||
openoffice openoffice.org 2.2 |
||
openoffice openoffice.org 2.3 |