cbcvebase.
CVE-2014-3575
published 2014-08-27

CVE-2014-3575: The OLE preview generation in Apache OpenOffice before 4.1.1 and OpenOffice.org (OOo) might allow remote attackers to embed arbitrary data into documents via…

medium4.3CVSS 3.1
AVNACMAuNCPINAN
The OLE preview generation in Apache OpenOffice before 4.1.1 and OpenOffice.org (OOo) might allow remote attackers to embed arbitrary data into documents via crafted OLE objects.

Affected

7 ranges
VendorProductVersion rangeFixed in
apacheopenoffice< 4.1.14.1.1
libreofficelibreoffice< 4.2.64.2.6
libreofficelibreoffice>= 0 < 1:4.2.6.3-0ubuntu11:4.2.6.3-0ubuntu1
libreofficelibreoffice>= 4.3.0 < 4.3.14.3.1
redhatenterprise_linux_desktop
redhatenterprise_linux_server
redhatenterprise_linux_workstation

CVSS provenance

nvd4.3MEDIUMAV:N/AC:M/Au:N/C:P/I:N/A:N
osv4.3MEDIUM