6.8
CVSSv2

CVE-2012-2334

Published: 19/06/2012 Updated: 13/02/2023
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Integer overflow in filter/source/msfilter/msdffimp.cxx in OpenOffice.org (OOo) 3.3, 3.4 Beta, and possibly earlier, and LibreOffice prior to 3.5.3, allows remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code via the length of an Escher graphics record in a PowerPoint (.ppt) document, which triggers a buffer overflow.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

apache openoffice.org 3.3

apache openoffice.org 3.4

libreoffice libreoffice 3.3.1

libreoffice libreoffice 3.3.4

libreoffice libreoffice 3.4.5

libreoffice libreoffice 3.4.1

libreoffice libreoffice 3.4.2

libreoffice libreoffice 3.4.0

libreoffice libreoffice 3.3.3

libreoffice libreoffice 3.3.0

libreoffice libreoffice 3.3.2

libreoffice libreoffice 3.5

libreoffice libreoffice

Vendor Advisories

Synopsis Important: openofficeorg security update Type/Severity Security Advisory: Important Topic Updated openofficeorg packages that fix multiple security issues are nowavailable for Red Hat Enterprise Linux 5 and 6The Red Hat Security Response Team has rated this update as havingimportant security imp ...
LibreOffice could be made to crash or potentially run programs as your login if it opened a specially crafted file ...
OpenOfficeorg could be made to crash or potentially run programs as your login if it opened a specially crafted file ...
It was discovered that OpenOfficeorg would not properly process crafted document files, possibly leading to arbitrary code execution CVE-2012-1149 Integer overflows in PNG image handling CVE-2012-2334 Integer overflow in operator new[] invocation and heap-based buffer overflow inside the MS-ODRAW parser For the stable distribution (squeeze ...