CVE-2012-2334
Integer overflow in filter/source/msfilter/msdffimp.cxx in OpenOffice.org (OOo) 3.3, 3.4 Beta, and possibly earlier, and LibreOffice before 3.5.3, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the length of an Escher graphics record in a PowerPoint (.ppt) document, which triggers a buffer overflow.
- Affected products
- Centos, Libreoffice, Openoffice, Openoffice.Org, Office Powerpoint, Red Hat
- Apache Openoffice.org
- = 3.3, 3.4
- Fix
- Available
- CVSS 2.0
- 6.8 MEDIUM
- EPSS
- 13.0% (96th percentile)
- Weakness
- CWE-189
- NVD status
- Modified
- Published
- 2012-06-19
CVE-2012-2334 at NVD
1 known exploit for CVE-2012-2334
Proof-of-concept code and exploit modules indexed by Sploitus