2.6
CVSSv2

CVE-2008-4937

Published: 05/11/2008 Updated: 08/08/2017
CVSS v2 Base Score: 2.6 | Impact Score: 4.9 | Exploitability Score: 1.9
VMScore: 231
Vector: AV:L/AC:H/Au:N/C:N/I:P/A:P

Vulnerability Summary

senddoc in OpenOffice.org (OOo) 2.4.1 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/log.obr.##### temporary file.

Vulnerable Product Search on Vulmon Subscribe to Product

openoffice openoffice.org 2.4.1

Vendor Advisories

USN-677-1 fixed vulnerabilities in OpenOfficeorg The changes required that openofficeorg-l10n also be updated for the new version in Ubuntu 804 LTS ...
Multiple memory overflow flaws were discovered in OpenOfficeorg’s handling of WMF and EMF files If a user were tricked into opening a specially crafted document, a remote attacker might be able to execute arbitrary code with user privileges (CVE-2008-2237, CVE-2008-2238) ...