Lucene search

K
ubuntuUbuntuUSN-406-1
HistoryJan 12, 2007 - 12:00 a.m.

OpenOffice.org vulnerability

2007-01-1200:00:00
ubuntu.com
35

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.2

Confidence

Low

EPSS

0.118

Percentile

95.3%

Releases

  • Ubuntu 6.06
  • Ubuntu 5.10

Details

An integer overflow was discovered in OpenOffice.org’s handling of WMF
files. If a user were tricked into opening a specially crafted WMF
file, an attacker could execute arbitrary code with user privileges.

OSVersionArchitecturePackageVersionFilename
Ubuntu6.06noarchopenoffice.org-core< 2.0.2-2ubuntu12.2UNKNOWN
Ubuntu5.10noarchopenoffice.org2-core< 1.9.129-0.1ubuntu4.2UNKNOWN

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.2

Confidence

Low

EPSS

0.118

Percentile

95.3%