oowriter in OpenOffice.org 3.3.0 and LibreOffice before 3.4.3 allows user-assisted remote attackers to cause a denial of service (crash) via a crafted DOC file that triggers an out-of-bounds read in the DOC sprm parser.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2011-10-21 11:55
Updated : 2014-10-23 23:19
NVD link : CVE-2011-2713
Mitre link : CVE-2011-2713
JSON object : View
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer
Products Affected
sun
- openoffice.org
libreoffice
- libreoffice