← All CVEs

CVE-2012-2334

medium · 6.8

Integer overflow in filter/source/msfilter/msdffimp.cxx in OpenOffice.org (OOo) 3.3, 3.4 Beta, and possibly earlier, and LibreOffice before 3.5.3, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the length of an Escher graphics record in a PowerPoint (.ppt) document, which triggers a buffer overflow.

6.8
CVSS
13.5%
EPSS (exploit prob.)
96th
EPSS percentile
2012-06-19
Published

AV:N/AC:M/Au:N/C:P/I:P/A:P

Weaknesses

CWE-189

Affected products

VendorProductAffected versions
apacheopenoffice.org3.3
apacheopenoffice.org3.4
libreofficelibreoffice<= 3.5.2
libreofficelibreoffice3.3.0
libreofficelibreoffice3.3.1
libreofficelibreoffice3.3.2
libreofficelibreoffice3.3.3
libreofficelibreoffice3.3.4
libreofficelibreoffice3.4.0
libreofficelibreoffice3.4.1
libreofficelibreoffice3.4.2
libreofficelibreoffice3.4.5
libreofficelibreoffice3.5

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2012-2334