Redland Raptor (aka libraptor) prior to 2.0.7, as used by OpenOffice 3.3 and 3.4 Beta, LibreOffice prior to 3.4.6 and 3.5.x prior to 3.5.1, and other products, allows user-assisted remote malicious users to read arbitrary files via a crafted XML external entity (XXE) declaration and reference in an RDF document.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
librdf raptor |
||
libreoffice libreoffice 3.5.0 |
||
libreoffice libreoffice |
||
apache openoffice 3.3.0 |
||
apache openoffice 3.4.0 |
||
fedoraproject fedora 17 |
||
fedoraproject fedora 16 |
||
redhat enterprise linux server 5.0 |
||
redhat enterprise linux server aus 6.2 |
||
redhat enterprise linux workstation 5.0 |
||
redhat enterprise linux desktop 6.0 |
||
redhat enterprise linux server 6.0 |
||
redhat enterprise linux workstation 6.0 |
||
redhat enterprise linux desktop 5.0 |
||
redhat storage 2.0 |
||
redhat storage for public cloud 2.0 |
||
redhat enterprise linux eus 6.2 |
||
redhat gluster storage server for on-premise 2.0 |
||
debian debian linux 6.0 |