CVE-2014-3524
published 2014-08-26CVE-2014-3524: Apache OpenOffice before 4.1.1 allows remote attackers to execute arbitrary commands and possibly have other unspecified impact via a crafted Calc spreadsheet.
PriorityP356critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
14.60%
96.3th percentile
Apache OpenOffice before 4.1.1 allows remote attackers to execute arbitrary commands and possibly have other unspecified impact via a crafted Calc spreadsheet.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache | openoffice | < 4.1.1 | 4.1.1 |
| libreoffice | libreoffice | < 4.2.6 | 4.2.6 |
| libreoffice | libreoffice | >= 0 < 1:4.2.6.3-0ubuntu1 | 1:4.2.6.3-0ubuntu1 |
| libreoffice | libreoffice | >= 4.3.0 < 4.3.1 | 4.3.1 |
CVSS provenance
nvdv2.09.3CRITICALAV:N/AC:M/Au:N/C:C/I:C/A:C
osv9.3CRITICAL
vendor_redhat9.3CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-7h2p-mc8p-mxwq: Apache OpenOffice before 4
ghsa_unreviewed·2022-05-13
CVE-2014-3524 [HIGH] CWE-77 GHSA-7h2p-mc8p-mxwq: Apache OpenOffice before 4
Apache OpenOffice before 4.1.1 allows remote attackers to execute arbitrary commands and possibly have other unspecified impact via a crafted Calc spreadsheet.
OSV
CVE-2014-3524: Apache OpenOffice before 4
osv·2014-08-26·CVSS 9.3
CVE-2014-3524 [CRITICAL] CVE-2014-3524: Apache OpenOffice before 4
Apache OpenOffice before 4.1.1 allows remote attackers to execute arbitrary commands and possibly have other unspecified impact via a crafted Calc spreadsheet.
Ubuntu
LibreOffice vulnerability
vendor_ubuntu·2014-09-02
CVE-2014-3524 LibreOffice vulnerability
Title: LibreOffice vulnerability
Summary: LibreOffice Calc could be made to crash or run programs as your login if it
opened a specially crafted file.
Rohan Durve and James Kettle discovered LibreOffice Calc sometimes allowed
for command injection when opening spreadsheets. If a user were tricked
into opening a crafted Calc spreadsheet, an attacker could exploit this to
run programs as your login.
Instructions: After a standard system update you need to restart LibreOffice to make
all the necessary changes.
Red Hat
libreoffice/openoffice.org: CSV command injection and DDE formulas
vendor_redhat·2014-08-21·CVSS 9.3
CVE-2014-3524 [CRITICAL] libreoffice/openoffice.org: CSV command injection and DDE formulas
libreoffice/openoffice.org: CSV command injection and DDE formulas
Apache OpenOffice before 4.1.1 allows remote attackers to execute arbitrary commands and possibly have other unspecified impact via a crafted Calc spreadsheet.
Statement: Not vulnerable. This issue does not affect the version of OpenOffice as shipped in Red Hat Enterprise Linux 5. This issue does not affect the version of LibreOffice as shipped in Red Hat Enterprise Linux 6 and 7.
Package: openoffice.org (Red Hat Enterprise Linux 5) - Not affected
Package: libreoffice (Red Hat Enterprise Linux 6) - Not affected
Package: libreoffice (Red Hat Enterprise Linux 7) - Not affected
No detection rules found.
No public exploits indexed.
HackerOne
CSV Injection at https://assets-paris-demo.codefi.network/
hackerone·2023-01-04·CVSS 9.3
[CRITICAL] CSV Injection at https://assets-paris-demo.codefi.network/
CSV Injection at https://assets-paris-demo.codefi.network/
## Summary:
Hi consensys Security Team.
I have found CSV Injection when generate report at https://assets-paris-demo.codefi.network/
CSV Injection, also known as Formula Injection, occurs when websites embed untrusted input inside CSV files.
When a spreadsheet program such as Microsoft Excel or LibreOffice Calc is used to open a CSV, any cells starting with = will be interpreted by the software as a formula. Maliciously crafted formulas can be used for three key attacks:
- Hijacking the user’s computer by exploiting vulnerabilities in the spreadsheet software, such as CVE-2014-3524.
- Hijacking the user’s computer by exploiting the user’s tendency to ignore security warnings in spreadsheets that they downloaded from their own w
Bugzilla
CVE-2014-3524 libreoffice/openoffice.org: CSV command injection and DDE formulas
bugzilla·2014-08-27·CVSS 9.3
CVE-2014-3524 [CRITICAL] CVE-2014-3524 libreoffice/openoffice.org: CSV command injection and DDE formulas
CVE-2014-3524 libreoffice/openoffice.org: CSV command injection and DDE formulas
Common Vulnerabilities and Exposures assigned an identifier CVE-2014-3524 to
the following vulnerability:
Name: CVE-2014-3524
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3524
Assigned: 20140514
Reference: BUGTRAQ:20140821 CVE-2014-3524: Apache OpenOffice Calc Command Injection Vulnerability
Reference: http://www.securityfocus.com/archive/1/archive/1/533200/100/0/threaded
Reference: http://www.securityfocus.com/bid/69351
Reference: SECTRACK:1030755
Reference: http://www.securitytracker.com/id/1030755
Reference: XF:apache-openoffice-cve20143524-command-exec(95421)
Reference: http://xforce.iss.net/xforce/xfdb/95421
Apache OpenOffice before 4.1.1 allows remote attackers to execute
arbitrary comm
http://blog.documentfoundation.org/2014/08/28/libreoffice-4-3-1-fresh-announced/http://secunia.com/advisories/59600http://secunia.com/advisories/59877http://secunia.com/advisories/60235http://www.openoffice.org/security/cves/CVE-2014-3524.htmlhttp://www.securityfocus.com/archive/1/533200/100/0/threadedhttp://www.securityfocus.com/bid/69351http://www.securitytracker.com/id/1030755https://exchange.xforce.ibmcloud.com/vulnerabilities/95421https://security.gentoo.org/glsa/201603-05http://blog.documentfoundation.org/2014/08/28/libreoffice-4-3-1-fresh-announced/http://secunia.com/advisories/59600http://secunia.com/advisories/59877http://secunia.com/advisories/60235http://www.openoffice.org/security/cves/CVE-2014-3524.htmlhttp://www.securityfocus.com/archive/1/533200/100/0/threadedhttp://www.securityfocus.com/bid/69351http://www.securitytracker.com/id/1030755https://exchange.xforce.ibmcloud.com/vulnerabilities/95421https://security.gentoo.org/glsa/201603-05
2014-08-26
Published