9.3
CVSSv2

CVE-2008-2237

Published: 30/10/2008 Updated: 29/09/2017
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Heap-based buffer overflow in OpenOffice.org (OOo) 2.x prior to 2.4.2 allows remote malicious users to execute arbitrary code via a crafted WMF file associated with a StarOffice/StarSuite document.

Vulnerable Product Search on Vulmon Subscribe to Product

openoffice openoffice.org

openoffice openoffice.org 2.0.3

openoffice openoffice.org 2.4

openoffice openoffice.org 2.0

openoffice openoffice.org 2.2.1

openoffice openoffice.org 2.3

openoffice openoffice.org 2.0.2

openoffice openoffice.org 2.0.4

openoffice openoffice.org 2.3.1

openoffice openoffice.org 2.4.1

openoffice openoffice.org 2.1

openoffice openoffice.org 2.2

Vendor Advisories

Synopsis Important: openofficeorg security update Type/Severity Security Advisory: Important Topic Updated openofficeorg packages that correct security issues are nowavailable for Red Hat Enterprise Linux 3, 4, and 5This update has been rated as having important security impact by the RedHat Security Res ...
USN-677-1 fixed vulnerabilities in OpenOfficeorg The changes required that openofficeorg-l10n also be updated for the new version in Ubuntu 804 LTS ...
Multiple memory overflow flaws were discovered in OpenOfficeorg’s handling of WMF and EMF files If a user were tricked into opening a specially crafted document, a remote attacker might be able to execute arbitrary code with user privileges (CVE-2008-2237, CVE-2008-2238) ...