CVE Vulnerabilities

CVE-2008-2152

Published: Jun 10, 2008 | Modified: Sep 29, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Integer overflow in the rtl_allocateMemory function in sal/rtl/source/alloc_global.c in OpenOffice.org (OOo) 2.0 through 2.4 allows remote attackers to execute arbitrary code via a crafted file that triggers a heap-based buffer overflow.

Affected Software

Name Vendor Start Version End Version
Openoffice.org Openoffice 2.0 (including) 2.0 (including)
Openoffice.org Openoffice 2.1 (including) 2.1 (including)
Openoffice.org Openoffice 2.2 (including) 2.2 (including)
Openoffice.org Openoffice 2.3 (including) 2.3 (including)
Openoffice.org Openoffice 2.4 (including) 2.4 (including)

References