Lucene search

K
ubuntucveUbuntu.comUB:CVE-2012-3456
HistoryAug 09, 2012 - 12:00 a.m.

CVE-2012-3456

2012-08-0900:00:00
ubuntu.com
ubuntu.com
14

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

EPSS

0.736

Percentile

98.2%

Heap-based buffer overflow in the read function in
filters/words/msword-odf/wv2/src/styles.cpp in the Microsoft import filter
in Calligra 2.4.3 and earlier allows remote attackers to cause a denial of
service (application crash) and possibly execute arbitrary code via a
crafted ODF style in an ODF document. NOTE: this is the same vulnerability
as CVE-2012-3455, but it was SPLIT by the CNA even though Calligra and
KOffice share the same codebase.

Bugs

OSVersionArchitecturePackageVersionFilename
ubuntu12.04noarchcalligra< 1:2.4.0-0ubuntu2.1UNKNOWN

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

EPSS

0.736

Percentile

98.2%