CVE-2011-2685
published 2011-07-21CVE-2011-2685: Stack-based buffer overflow in the Lotus Word Pro import filter in LibreOffice before 3.3.3 allows remote attackers to execute arbitrary code via a crafted…
PriorityP346critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
7.04%
93.4th percentile
Stack-based buffer overflow in the Lotus Word Pro import filter in LibreOffice before 3.3.3 allows remote attackers to execute arbitrary code via a crafted .lwp file.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | libreoffice | < libreoffice 1:3.3.3-1 (bookworm) | libreoffice 1:3.3.3-1 (bookworm) |
| libreoffice | libreoffice | <= 3.3.2 | — |
| libreoffice | libreoffice | — | — |
| libreoffice | libreoffice | — | — |
| libreoffice | libreoffice | >= 0 < 1:3.3.3-1 | 1:3.3.3-1 |
| libreoffice | libreoffice | >= 0 < 1:3.3.3-1 | 1:3.3.3-1 |
| libreoffice | libreoffice | >= 0 < 1:3.3.3-1 | 1:3.3.3-1 |
| libreoffice | libreoffice | >= 0 < 1:3.3.3-1 | 1:3.3.3-1 |
CVSS provenance
nvdv2.09.3CRITICALAV:N/AC:M/Au:N/C:C/I:C/A:C
osv9.3CRITICAL
vendor_debian9.3CRITICAL
vendor_redhat9.3CRITICAL
vendor_ubuntu9.3CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
OpenOffice.org vulnerabilities
vendor_ubuntu·2012-07-02·CVSS 9.3
CVE-2011-2685 [CRITICAL] OpenOffice.org vulnerabilities
Title: OpenOffice.org vulnerabilities
Summary: OpenOffice.org could be made to crash or potentially run programs as your
login if it opened a specially crafted file.
A stack-based buffer overflow was discovered in the Lotus Word Pro import
filter in OpenOffice.org. The default compiler options for affected
releases should reduce the vulnerability to a denial of service.
(CVE-2011-2685)
Huzaifa Sidhpurwala discovered that OpenOffice.org could be made to crash
if it opened a specially crafted Word document. (CVE-2011-2713)
Integer overflows were discovered in the graphics loading code of several
different image types. If a user were tricked into opening a specially
crafted file, an attacker could cause OpenOffice.org to crash or possibly
execute arbitrary code with the privileges of the
Red Hat
filter): Multiple stack buffer overflows when processing certain LWP files (VU#953183)
vendor_redhat·2011-06-22·CVSS 9.3
CVE-2011-2685 [CRITICAL] CWE-121 filter): Multiple stack buffer overflows when processing certain LWP files (VU#953183)
filter): Multiple stack buffer overflows when processing certain LWP files (VU#953183)
Stack-based buffer overflow in the Lotus Word Pro import filter in LibreOffice before 3.3.3 allows remote attackers to execute arbitrary code via a crafted .lwp file.
Statement: Not vulnerable. This issue did not affect the versions of openoffice.org and openoffice.org2 packages as shipped with Red Hat Enterprise Linux 4, and the versions of openoffice.org packages as shipped with Red Hat Enterprise Linux 5 and 6.
Package: openoffice.org (Red Hat Enterprise Linux 4) - Not affected
Package: openoffice.org (Red Hat Enterprise Linux 5) - Not affected
Package: openoffice.org (Red Hat Enterprise Linux 6) - Not affected
Debian
CVE-2011-2685: libreoffice - Stack-based buffer overflow in the Lotus Word Pro import filter in LibreOffice b...
vendor_debian·2011·CVSS 9.3
CVE-2011-2685 [CRITICAL] CVE-2011-2685: libreoffice - Stack-based buffer overflow in the Lotus Word Pro import filter in LibreOffice b...
Stack-based buffer overflow in the Lotus Word Pro import filter in LibreOffice before 3.3.3 allows remote attackers to execute arbitrary code via a crafted .lwp file.
Scope: local
bookworm: resolved (fixed in 1:3.3.3-1)
bullseye: resolved (fixed in 1:3.3.3-1)
forky: resolved (fixed in 1:3.3.3-1)
sid: resolved (fixed in 1:3.3.3-1)
trixie: resolved (fixed in 1:3.3.3-1)
GHSA
GHSA-6mj6-f4j4-fwcx: Stack-based buffer overflow in the Lotus Word Pro import filter in LibreOffice before 3
ghsa_unreviewed·2022-05-17
CVE-2011-2685 [HIGH] CWE-119 GHSA-6mj6-f4j4-fwcx: Stack-based buffer overflow in the Lotus Word Pro import filter in LibreOffice before 3
Stack-based buffer overflow in the Lotus Word Pro import filter in LibreOffice before 3.3.3 allows remote attackers to execute arbitrary code via a crafted .lwp file.
OSV
CVE-2011-2685: Stack-based buffer overflow in the Lotus Word Pro import filter in LibreOffice before 3
osv·2011-07-21·CVSS 9.3
CVE-2011-2685 [CRITICAL] CVE-2011-2685: Stack-based buffer overflow in the Lotus Word Pro import filter in LibreOffice before 3
Stack-based buffer overflow in the Lotus Word Pro import filter in LibreOffice before 3.3.3 allows remote attackers to execute arbitrary code via a crafted .lwp file.
No detection rules found.
No public exploits indexed.
http://cgit.freedesktop.org/libreoffice/filters/commit/?id=278831e37a23e9e2e29ca811c3a5398b7c67464dhttp://cgit.freedesktop.org/libreoffice/filters/commit/?id=d93fa011d713100775cd3ac88c468b6830d48877http://lists.opensuse.org/opensuse-updates/2011-10/msg00019.htmlhttp://www.kb.cert.org/vuls/id/953183http://www.mandriva.com/security/advisories?name=MDVSA-2011:172http://www.openwall.com/lists/oss-security/2011/07/06/13http://www.openwall.com/lists/oss-security/2011/07/12/13http://cgit.freedesktop.org/libreoffice/filters/commit/?id=278831e37a23e9e2e29ca811c3a5398b7c67464dhttp://cgit.freedesktop.org/libreoffice/filters/commit/?id=d93fa011d713100775cd3ac88c468b6830d48877http://lists.opensuse.org/opensuse-updates/2011-10/msg00019.htmlhttp://www.kb.cert.org/vuls/id/953183http://www.mandriva.com/security/advisories?name=MDVSA-2011:172http://www.openwall.com/lists/oss-security/2011/07/06/13http://www.openwall.com/lists/oss-security/2011/07/12/13
2011-07-21
Published