Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:24555
HistoryApr 10, 2020 - 12:57 a.m.

Arbitrary Code Execution

2020-04-1000:57:25
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
17

0.018 Low

EPSS

Percentile

88.4%

openoffice.org is vulnerable to arbitrary code execution. The vulnerability exists as an array index error and an integer signedness error were found in the way OpenOffice.org parsed certain Rich Text Format (RTF) files. An attacker could use these flaws to create a specially-crafted RTF file that, when opened, would cause OpenOffice.org to crash or, possibly, execute arbitrary code with the privileges of the user running OpenOffice.org.

References