Lucene search

K
cveMitreCVE-2007-2834
HistorySep 18, 2007 - 9:17 p.m.

CVE-2007-2834

2007-09-1821:17:00
CWE-190
mitre
web.nvd.nist.gov
46
cve
2007
2834
integer overflow
tiff parser
openoffice.org
arbitrary code execution
buffer overflow

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.7

Confidence

Low

EPSS

0.881

Percentile

98.7%

Integer overflow in the TIFF parser in OpenOffice.org (OOo) before 2.3; and Sun StarOffice 6, 7, and 8 Office Suite (StarSuite); allows remote attackers to execute arbitrary code via a TIFF file with crafted values of unspecified length fields, which triggers allocation of an incorrect amount of memory, resulting in a heap-based buffer overflow.

Affected configurations

Nvd
Node
apacheopenofficeRange<2.3.0
OR
sunstarofficeMatch6.0
OR
sunstarofficeMatch7.0
OR
sunstarofficeMatch8.0
OR
sunstarsuite
Node
debiandebian_linuxMatch3.1
OR
debiandebian_linuxMatch4.0
Node
canonicalubuntu_linuxMatch6.06
OR
canonicalubuntu_linuxMatch6.10
OR
canonicalubuntu_linuxMatch7.04
VendorProductVersionCPE
apacheopenoffice*cpe:2.3:a:apache:openoffice:*:*:*:*:*:*:*:*
sunstaroffice6.0cpe:2.3:a:sun:staroffice:6.0:*:*:*:*:*:*:*
sunstaroffice7.0cpe:2.3:a:sun:staroffice:7.0:*:*:*:*:*:*:*
sunstaroffice8.0cpe:2.3:a:sun:staroffice:8.0:*:*:*:*:*:*:*
sunstarsuite*cpe:2.3:a:sun:starsuite:*:*:*:*:*:*:*:*
debiandebian_linux3.1cpe:2.3:o:debian:debian_linux:3.1:*:*:*:*:*:*:*
debiandebian_linux4.0cpe:2.3:o:debian:debian_linux:4.0:*:*:*:*:*:*:*
canonicalubuntu_linux6.06cpe:2.3:o:canonical:ubuntu_linux:6.06:*:*:*:*:*:*:*
canonicalubuntu_linux6.10cpe:2.3:o:canonical:ubuntu_linux:6.10:*:*:*:*:*:*:*
canonicalubuntu_linux7.04cpe:2.3:o:canonical:ubuntu_linux:7.04:*:*:*:*:*:*:*

References

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.7

Confidence

Low

EPSS

0.881

Percentile

98.7%