Computer Security
[EN] securityvulns.ru no-pyccku


LibreOffice use-after-free vulnereability
updated since 10.11.2014
Published:24.11.2014
Source:
SecurityVulns ID:14084
Type:remote
Threat Level:
5/10
Description:Ingress remote control protocol use-after-free, memory corruption in OLE preview.
CVE:CVE-2014-3693 (Use-after-free vulnerability in the socket manager of Impress Remote in LibreOffice 4.x before 4.2.7 and 4.3.x before 4.3.3 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted request to TCP port 1599.)
 CVE-2014-3575 (The OLE preview generation in Apache OpenOffice before 4.1.1 and OpenOffice.org (OOo) might allow remote attackers to embed arbitrary data into documents via crafted OLE objects.)
Original documentdocumentUBUNTU, [USN-2400-1] LibreOffice vulnerability (24.11.2014)
Files:CVE-2014-3693 Use-After-Free in socket manager of Impress Remote

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod