CVE-2016-1513
published 2016-08-05CVE-2016-1513: The Impress tool in Apache OpenOffice 4.1.2 and earlier allows remote attackers to cause a denial of service (out-of-bounds read or write) or execute arbitrary…
PriorityP337high7.8CVSS 3.0
AVLACLPRNUIRSUCHIHAH
EPSS
4.48%
90.4th percentile
The Impress tool in Apache OpenOffice 4.1.2 and earlier allows remote attackers to cause a denial of service (out-of-bounds read or write) or execute arbitrary code via crafted MetaActions in an (1) ODP or (2) OTP file.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache | openoffice | <= 4.1.2 | — |
| debian | libreoffice | < libreoffice 1:4.3.3-1 (bookworm) | libreoffice 1:4.3.3-1 (bookworm) |
| libreoffice | libreoffice | >= 0 < 1:4.3.3-1 | 1:4.3.3-1 |
| libreoffice | libreoffice | >= 0 < 1:4.3.3-1 | 1:4.3.3-1 |
| libreoffice | libreoffice | >= 0 < 1:4.3.3-1 | 1:4.3.3-1 |
| libreoffice | libreoffice | >= 0 < 1:4.3.3-1 | 1:4.3.3-1 |
CVSS provenance
nvdv3.07.8HIGHCVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv7.8HIGH
vendor_debian7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
LibreOffice vulnerability
vendor_ubuntu·2016-08-04
CVE-2016-1513 LibreOffice vulnerability
Title: LibreOffice vulnerability
Summary: LibreOffice could be made to crash or run programs as your login if it
opened a specially crafted file.
Yves Younan and Richard Johnson discovered that LibreOffice incorrectly
handled presentation files. If a user were tricked into opening a
specially crafted presentation file, a remote attacker could cause
LibreOffice to crash, and possibly execute arbitrary code.
Instructions: After a standard system update you need to restart LibreOffice to make
all the necessary changes.
Debian
CVE-2016-1513: libreoffice - The Impress tool in Apache OpenOffice 4.1.2 and earlier allows remote attackers ...
vendor_debian·2016·CVSS 7.8
CVE-2016-1513 [HIGH] CVE-2016-1513: libreoffice - The Impress tool in Apache OpenOffice 4.1.2 and earlier allows remote attackers ...
The Impress tool in Apache OpenOffice 4.1.2 and earlier allows remote attackers to cause a denial of service (out-of-bounds read or write) or execute arbitrary code via crafted MetaActions in an (1) ODP or (2) OTP file.
Scope: local
bookworm: resolved (fixed in 1:4.3.3-1)
bullseye: resolved (fixed in 1:4.3.3-1)
forky: resolved (fixed in 1:4.3.3-1)
sid: resolved (fixed in 1:4.3.3-1)
trixie: resolved (fixed in 1:4.3.3-1)
GHSA
GHSA-f753-7547-p2rj: The Impress tool in Apache OpenOffice 4
ghsa_unreviewed·2022-05-17
CVE-2016-1513 [HIGH] CWE-125 GHSA-f753-7547-p2rj: The Impress tool in Apache OpenOffice 4
The Impress tool in Apache OpenOffice 4.1.2 and earlier allows remote attackers to cause a denial of service (out-of-bounds read or write) or execute arbitrary code via crafted MetaActions in an (1) ODP or (2) OTP file.
OSV
CVE-2016-1513: The Impress tool in Apache OpenOffice 4
osv·2016-08-05·CVSS 7.8
CVE-2016-1513 [HIGH] CVE-2016-1513: The Impress tool in Apache OpenOffice 4
The Impress tool in Apache OpenOffice 4.1.2 and earlier allows remote attackers to cause a denial of service (out-of-bounds read or write) or execute arbitrary code via crafted MetaActions in an (1) ODP or (2) OTP file.
No detection rules found.
No public exploits indexed.
Talos
Vulnerability Spotlight: OpenOffice Impress MetaActions Arbitrary Read Write Vulnerability
blogs_talos·2016-07-21·CVSS 7.8
CVE-2016-1513 [HIGH] Vulnerability Spotlight: OpenOffice Impress MetaActions Arbitrary Read Write Vulnerability
## Vulnerability Spotlight: OpenOffice Impress MetaActions Arbitrary Read Write Vulnerability
This vulnerability was discovered by Richard Johnson and Yves Younan of Cisco Talos.
Talos is releasing an advisory for a vulnerability in OpenOffice Impress. ( TALOS-2016-0051 /CVE-2016-1513). Talos has discovered an exploitable out-of-bounds vulnerability which exists in OpenOffice when handling MetaActions. A specially crafted OpenDocument Presentation .ODP or Presentation Template .OTP file can cause an out-of-bounds read/write resulting in denial-of-service (memory corruption and application crash) and possible execution of arbitrary code.
## Overview
OpenOffice is an open-source office software suite for word processing, spreadsheets, presentations, graphics, databases and other office f
Talos
Vulnerability Spotlight: OpenOffice Impress MetaActions Arbitrary Read Write Vulnerability
blogs_talos·2016-07-21·CVSS 7.8
CVE-2016-1513 [HIGH] Vulnerability Spotlight: OpenOffice Impress MetaActions Arbitrary Read Write Vulnerability
This vulnerability was discovered by Richard Johnson and Yves Younan of Cisco Talos.
Talos is releasing an advisory for a vulnerability in OpenOffice Impress. (TALOS-2016-0051/CVE-2016-1513). Talos has discovered an exploitable out-of-bounds vulnerability which exists in OpenOffice when handling MetaActions. A specially crafted OpenDocument Presentation .ODP or Presentation Template .OTP file can cause an out-of-bounds read/write resulting in denial-of-service (memory corruption and application crash) and possible execution of arbitrary code.
## Overview
OpenOffice is an open-source office software suite for word processing, spreadsheets, presentations, graphics, databases and other office functions. It works on various operating systems and is available in a host of languages. It uses
http://www.openoffice.org/security/cves/CVE-2016-1513.htmlhttp://www.securityfocus.com/bid/92079http://www.securitytracker.com/id/1036443http://www.talosintelligence.com/reports/TALOS-2016-0051/http://www.ubuntu.com/usn/USN-3046-1https://bz.apache.org/ooo/show_bug.cgi?id=127045https://security.gentoo.org/glsa/201703-01http://www.openoffice.org/security/cves/CVE-2016-1513.htmlhttp://www.securityfocus.com/bid/92079http://www.securitytracker.com/id/1036443http://www.talosintelligence.com/reports/TALOS-2016-0051/http://www.ubuntu.com/usn/USN-3046-1https://bz.apache.org/ooo/show_bug.cgi?id=127045https://security.gentoo.org/glsa/201703-01
2016-08-05
Published