Vulnerability CVE-2017-12608: Information
Description
A vulnerability in Apache OpenOffice Writer DOC file parser before 4.1.4, and specifically in ImportOldFormatStyles, allows attackers to craft malicious documents that cause denial of service (memory corruption and application crash) potentially resulting in arbitrary code execution.
Severity: HIGH (7.8) Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Fixed packages
Package name | Branch | Fixed in version | Version from repository | Errata ID | Task # | State |
---|---|---|---|---|---|---|
LibreOffice4 | c7 | 4.2-alt2.M70C.6 | 4.2-alt2.M70C.6 | ALT-PU-2018-1132-1 | 200206 | Fixed |
References to Advisories, Solutions, and Tools
Hyperlink | Resource |
---|---|
https://www.openoffice.org/security/cves/CVE-2017-12608.html |
|
DSA-4022 |
|
1039735 |
|
1039733 |
|
101585 |
|
[debian-lts-announce] 20171220 [SECURITY] [DLA 1214-1] libreoffice security update |
|