296,746
Total vulnerabilities in the database
Integer overflow in filter/source/msfilter/msdffimp.cxx in OpenOffice.org (OOo) 3.3, 3.4 Beta, and possibly earlier, and LibreOffice before 3.5.3, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the length of an Escher graphics record in a PowerPoint (.ppt) document, which triggers a buffer overflow.
| Software | From | Fixed in |
|---|---|---|
| apache / openoffice.org | 3.3 | 3.3.x |
| apache / openoffice.org | 3.4-beta | 3.4-beta.x |
| libreoffice / libreoffice | 3.3.1 | 3.3.1.x |
| libreoffice / libreoffice | 3.3.4 | 3.3.4.x |
| libreoffice / libreoffice | 3.4.5 | 3.4.5.x |
| libreoffice / libreoffice | 3.4.1 | 3.4.1.x |
| libreoffice / libreoffice | 3.4.2 | 3.4.2.x |
| libreoffice / libreoffice | 3.4.0 | 3.4.0.x |
| libreoffice / libreoffice | 3.3.3 | 3.3.3.x |
| libreoffice / libreoffice | 3.3.0 | 3.3.0.x |
| libreoffice / libreoffice | 3.3.2 | 3.3.2.x |
| libreoffice / libreoffice | 3.5 | 3.5.x |
| libreoffice / libreoffice | - | 3.5.2.x |