CVE Reference: CVE-2011-2713

NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2011-2713

Description:
oowriter in OpenOffice.org 3.3.0 and LibreOffice before 3.4.3 allows user-assisted remote attackers to cause a denial of service (crash) via a crafted DOC file that triggers an out-of-bounds read in the DOC sprm parser.

CVE Status:
Candidate

References:

SUSE
  http://lists.opensuse.org/opensuse-updates/2011-10/msg00019.html

ST
  1026145

SAID
  Secunia Advisory: SA50692
  Secunia Advisory: SA60799

OSVDB
  76178

MISC

MANDRIVA
  http://www.mandriva.com/security/advisories?name=MDVSA-2011:172

GENTOO
  http://www.gentoo.org/security/en/glsa/glsa-201408-19.xml
  http://security.gentoo.org/glsa/glsa-201209-05.xml

FEDORA
  http://lists.fedoraproject.org/pipermail/package-announce/2011-October/068198.html
  http://lists.fedoraproject.org/pipermail/package-announce/2011-October/068160.html

DEBIAN
  http://www.debian.org/security/2011/dsa-2315

CONFIRM
  http://www.libreoffice.org/advisories/CVE-2011-2713/

BID
  49969


Return to the previous page.