CVE-2018-11790
published 2019-01-31CVE-2018-11790: When loading a document with Apache Open Office 4.1.5 and earlier with smaller end line termination than the operating system uses, the defect occurs. In this…
PriorityP335high7.8CVSS 3.0
AVLACLPRLUINSUCHIHAH
EPSS
1.03%
59.7th percentile
When loading a document with Apache Open Office 4.1.5 and earlier with smaller end line termination than the operating system uses, the defect occurs. In this case OpenOffice runs into an Arithmetic Overflow at a string length calculation.
Affected
11 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache | openoffice | <= 4.1.5 | — |
| apache_software_foundation | apache_openoffice | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | libreoffice | < libreoffice 1:4.0.3-1 (bookworm) | libreoffice 1:4.0.3-1 (bookworm) |
| libreoffice | libreoffice | >= 0 < 1:4.0.3-1 | 1:4.0.3-1 |
| libreoffice | libreoffice | >= 0 < 1:4.0.3-1 | 1:4.0.3-1 |
| libreoffice | libreoffice | >= 0 < 1:4.0.3-1 | 1:4.0.3-1 |
| libreoffice | libreoffice | >= 0 < 1:4.0.3-1 | 1:4.0.3-1 |
| libreoffice | libreoffice | >= 0 < 1:4.2.8-0ubuntu5.5 | 1:4.2.8-0ubuntu5.5 |
| libreoffice | libreoffice | >= 0 < 1:5.1.6~rc2-0ubuntu1~xenial6 | 1:5.1.6~rc2-0ubuntu1~xenial6 |
CVSS provenance
nvdv3.07.8HIGHCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.04.6MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
osv7.8HIGH
vendor_debian7.8HIGH
vendor_ubuntu7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-jv89-hcw9-2wwr: When loading a document with Apache Open Office 4
ghsa_unreviewed·2022-05-13
CVE-2018-11790 [HIGH] CWE-682 GHSA-jv89-hcw9-2wwr: When loading a document with Apache Open Office 4
When loading a document with Apache Open Office 4.1.5 and earlier with smaller end line termination than the operating system uses, the defect occurs. In this case OpenOffice runs into an Arithmetic Overflow at a string length calculation.
OSV
libreoffice vulnerabilities
osv·2019-02-06·CVSS 7.8
CVE-2018-10119 [HIGH] libreoffice vulnerabilities
libreoffice vulnerabilities
It was discovered that LibreOffice incorrectly handled certain document
files. If a user were tricked into opening a specially crafted document, a
remote attacker could cause LibreOffice to crash, and possibly execute
arbitrary code. (CVE-2018-10119, CVE-2018-10120, CVE-2018-11790)
It was discovered that LibreOffice incorrectly handled embedded SMB
connections in document files. If a user were tricked in to opening a
specially crafted document, a remote attacker could possibly exploit this
to obtain sensitive information. (CVE-2018-10583)
Alex Inführ discovered that LibreOffice incorrectly handled embedded
scripts in document files. If a user were tricked into opening a specially
crafted document, a remote attacker could possibly execute arbitrary code.
(CVE-
OSV
CVE-2018-11790: When loading a document with Apache Open Office 4
osv·2019-01-31·CVSS 7.8
CVE-2018-11790 [HIGH] CVE-2018-11790: When loading a document with Apache Open Office 4
When loading a document with Apache Open Office 4.1.5 and earlier with smaller end line termination than the operating system uses, the defect occurs. In this case OpenOffice runs into an Arithmetic Overflow at a string length calculation.
Ubuntu
LibreOffice vulnerabilities
vendor_ubuntu·2019-02-06·CVSS 7.8
CVE-2018-10119 [HIGH] LibreOffice vulnerabilities
Title: LibreOffice vulnerabilities
Summary: Several security issues were fixed in LibreOffice.
It was discovered that LibreOffice incorrectly handled certain document
files. If a user were tricked into opening a specially crafted document, a
remote attacker could cause LibreOffice to crash, and possibly execute
arbitrary code. (CVE-2018-10119, CVE-2018-10120, CVE-2018-11790)
It was discovered that LibreOffice incorrectly handled embedded SMB
connections in document files. If a user were tricked in to opening a
specially crafted document, a remote attacker could possibly exploit this
to obtain sensitive information. (CVE-2018-10583)
Alex Inführ discovered that LibreOffice incorrectly handled embedded
scripts in document files. If a user were tricked into opening a specially
crafted docu
Debian
CVE-2018-11790: libreoffice - When loading a document with Apache Open Office 4.1.5 and earlier with smaller e...
vendor_debian·2018·CVSS 7.8
CVE-2018-11790 [HIGH] CVE-2018-11790: libreoffice - When loading a document with Apache Open Office 4.1.5 and earlier with smaller e...
When loading a document with Apache Open Office 4.1.5 and earlier with smaller end line termination than the operating system uses, the defect occurs. In this case OpenOffice runs into an Arithmetic Overflow at a string length calculation.
Scope: local
bookworm: resolved (fixed in 1:4.0.3-1)
bullseye: resolved (fixed in 1:4.0.3-1)
forky: resolved (fixed in 1:4.0.3-1)
sid: resolved (fixed in 1:4.0.3-1)
trixie: resolved (fixed in 1:4.0.3-1)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://www.securityfocus.com/bid/106803https://lists.apache.org/thread.html/7394e6b5f78a878bd0c44e9bc9adf90b8cdf49e9adc0f287145aba9b%40%3Ccommits.openoffice.apache.org%3Ehttps://usn.ubuntu.com/3883-1/https://www.openoffice.org/security/cves/CVE-2018-11790.htmlhttp://www.securityfocus.com/bid/106803https://lists.apache.org/thread.html/7394e6b5f78a878bd0c44e9bc9adf90b8cdf49e9adc0f287145aba9b%40%3Ccommits.openoffice.apache.org%3Ehttps://usn.ubuntu.com/3883-1/https://www.openoffice.org/security/cves/CVE-2018-11790.html
2019-01-31
Published