PT-2011-1222 · Microsoft+2 · Office Word+3

Published

2011-01-28

·

Updated

2022-02-07

·

CVE-2010-3454

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions OpenOffice.org (OOo) versions 2.x through 3.x before 3.3
Description The issue is related to multiple off-by-one errors in the WW8DopTypography::ReadFromMem function in oowriter, which can be triggered by crafted typography information in a Microsoft Word .DOC file. This can lead to a denial of service (application crash) or possibly allow remote attackers to execute arbitrary code. The vulnerability can also allow attackers to access confidential data, compromise its integrity, and cause a denial of service.
Recommendations For OpenOffice.org (OOo) versions 2.x through 3.x before 3.3, update to version 3.3 or later to resolve the issue. As a temporary workaround, consider avoiding the use of crafted Microsoft Word .DOC files that may trigger the out-of-bounds write. Restrict access to potentially malicious .DOC files to minimize the risk of exploitation.

Fix

DoS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2020-02900
CVE-2010-3454
DSA-2151-1
RHSA-2011:0181
RHSA-2011:0182
RHSA-2011:0183
RHSA-2011_0181
RHSA-2011_0182
RHSA-2011_0183

Affected Products

Office Word
Openoffice
Openoffice.Org
Red Hat