VRDA Feed by JPCERT/CC
  Vulnerability Response Decision Assistance Feed : Information for vulnerability impact analysis
[ about VRDA Feed | JPCERT/CC



 
Vulnerability Analysis Result (Revision No : 1) [ Download XML
CVE-2010-2936
openoffice.org: Integer overflow in simpress.bin in the Impress mod...
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2010-2936

Original

Integer overflow in simpress.bin in the Impress module in OpenOffice.org (OOo) 3.2.1 on Windows allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via crafted polygons in a PowerPoint document that triggers a heap-based buffer overflow.

Translation   (Show)





About This Analysis Information
Analysis Information Provider:
NIST NVD
First Published:
2010-08-25
Source Information Category:
Advisory, Alert
Last Updated:
2010-08-26




Affected Product Tags
cpe:/a:openoffice:openoffice.org:3.2.1
cpe:/o:microsoft:windows
 


Vulnerability Analysis Results
[Access Vector]  [?]
Undefined [?]

Local [?]
Adjacent Network [?]
X Network [?]

[Access Complexit]  [?]
Undefined [?]

High [?]
X Medium [?]
Low [?]

[Authentication]  [?]
Undefined [?]

Multiple [?]
Single [?]
X None [?]

[Confidentiality Impact]  [?]
Undefined [?]

None [?]
Partial [?]
X Complete [?]

[Integrity Impact]  [?]
Undefined [?]

None [?]
Partial [?]
X Complete [?]

[Availability Impact]  [?]
Undefined [?]

None [?]
Partial [?]
X Complete [?]

Alternatives




References
CONFIRM https://bugzilla.redhat.com/show_bug.cgi?id=622555




CONFIRM https://bugzilla.redhat.com/show_bug.cgi?id=622529#c6




MISC http://securityevaluators.com/files/papers/CrashAnalysis.pdf




MLIST [oss-security] 20100811 Re: CVE Request -- OpenOffice.org [two ids]: 1, integer truncation error 2, short integer overflow




MLIST [oss-security] 20100811 CVE Request -- OpenOffice.org [two ids]: 1, integer truncation error 2, short integer overflow




MLIST [dev] 20100806 Two exploitable OpenOffice.org bugs!




REDHAT RHSA-2010:0643




SECUNIA 41052




SECUNIA 40775




VUPEN ADV-2010-2149




VUPEN ADV-2010-2003




Vulnerability Type Numeric Errors (CWE-189)





Copyright © 2010 JPCERT/CC All Rights Reserved.