Back

HIGH

libreoffice: Out-of-bounds write in the WW8Fonts::WW8Fonts functionality

Published Nov 20, 2017

Description

A vulnerability in the OpenOffice Writer DOC file parser before 4.1.4, and specifically in the WW8Fonts Constructor, allows attackers to craft malicious documents that cause denial of service (memory corruption and application crash) potentially resulting in arbitrary code execution.

Affected products

Remediation

No remediation recorded yet.

Metrics

References (9)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner apache
Published Nov 20, 2017
Updated Sep 16, 2024
Reserved Jun 21, 2017
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Important
Public date Oct 26, 2017