Search CVE reports


Toggle filters

81 – 90 of 93 results


CVE-2010-4253

Medium priority

Some fixes available 4 of 5

Heap-based buffer overflow in Impress in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PNG file in an ODF or...

2 affected packages

libreoffice, openoffice.org

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libreoffice
openoffice.org
Show less packages

CVE-2010-3689

Low priority

Some fixes available 4 of 5

soffice in OpenOffice.org (OOo) 3.x before 3.3 places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory.

2 affected packages

libreoffice, openoffice.org

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libreoffice
openoffice.org
Show less packages

CVE-2010-3454

Medium priority

Some fixes available 4 of 5

Multiple off-by-one errors in the WW8DopTypography::ReadFromMem function in oowriter in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allow remote attackers to cause a denial of service (application crash) or possibly execute...

2 affected packages

libreoffice, openoffice.org

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libreoffice
openoffice.org
Show less packages

CVE-2010-3453

Medium priority

Some fixes available 4 of 5

The WW8ListManager::WW8ListManager function in oowriter in OpenOffice.org (OOo) 2.x and 3.x before 3.3 does not properly handle an unspecified number of list levels in user-defined list styles in WW8 data in a Microsoft...

2 affected packages

libreoffice, openoffice.org

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libreoffice
openoffice.org
Show less packages

CVE-2010-3452

Medium priority

Some fixes available 4 of 5

Use-after-free vulnerability in oowriter in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via crafted tags in an RTF document.

2 affected packages

libreoffice, openoffice.org

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libreoffice
openoffice.org
Show less packages

CVE-2010-3451

Medium priority

Some fixes available 4 of 5

Use-after-free vulnerability in oowriter in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via malformed tables in an RTF document.

2 affected packages

libreoffice, openoffice.org

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libreoffice
openoffice.org
Show less packages

CVE-2010-3450

Medium priority

Some fixes available 4 of 5

Multiple directory traversal vulnerabilities in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allow remote attackers to overwrite arbitrary files via a .. (dot dot) in an entry in (1) an XSLT JAR filter description file, (2) an...

2 affected packages

libreoffice, openoffice.org

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libreoffice
openoffice.org
Show less packages

CVE-2010-2936

Low priority

Some fixes available 4 of 6

Integer overflow in simpress.bin in the Impress module in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via crafted polygons...

2 affected packages

libreoffice, openoffice.org

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libreoffice
openoffice.org
Show less packages

CVE-2010-2935

Low priority

Some fixes available 4 of 6

simpress.bin in the Impress module in OpenOffice.org (OOo) 2.x and 3.x before 3.3 does not properly handle integer values associated with dictionary property items, which allows remote attackers to cause a denial of service...

2 affected packages

libreoffice, openoffice.org

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libreoffice
openoffice.org
Show less packages

CVE-2009-3571

Low priority
Ignored

Unspecified vulnerability in OpenOffice.org (OOo) has unknown impact and client-side attack vector, as demonstrated by a certain module in VulnDisco Pack Professional 8.8, aka "Client-side exploit." NOTE: as of 20091005, this...

2 affected packages

libreoffice, openoffice.org

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
libreoffice
openoffice.org
Show less packages