Apache OpenOffice.org (OOo) before 4.0 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via invalid PLCF data in a DOC document file.
The product writes data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
http://seclists.org/bugtraq/2013/Jul/173 | issue tracking mailing list third party advisory |
http://www.openoffice.org/security/cves/CVE-2013-2189.html | patch vendor advisory |
http://osvdb.org/95704 | vdb entry broken link |