CVE-2022-38745
published 2023-03-24CVE-2022-38745: Apache OpenOffice versions before 4.1.14 may be configured to add an empty entry to the Java class path. This may lead to run arbitrary Java code from the…
PriorityP340high7.8CVSS 3.1
AVLACLPRNUIRSUCHIHAH
EPSS
0.87%
55.1th percentile
Apache OpenOffice versions before 4.1.14 may be configured to add an empty entry to the Java class path. This may lead to run arbitrary Java code from the current directory.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache | openoffice | < 4.1.14 | 4.1.14 |
| apache_software_foundation | apache_openoffice | < 4.1.14 | 4.1.14 |
| debian | libreoffice | < libreoffice 1:7.3.1-1 (bookworm) | libreoffice 1:7.3.1-1 (bookworm) |
| libreoffice | libreoffice | >= 0 < 1:7.0.4-4+deb11u6 | 1:7.0.4-4+deb11u6 |
| libreoffice | libreoffice | >= 0 < 1:7.3.1-1 | 1:7.3.1-1 |
| libreoffice | libreoffice | >= 0 < 1:7.3.1-1 | 1:7.3.1-1 |
| libreoffice | libreoffice | >= 0 < 1:7.3.1-1 | 1:7.3.1-1 |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
LibreOffice vulnerability
vendor_ubuntu·2023-04-17
CVE-2022-38745 LibreOffice vulnerability
Title: LibreOffice vulnerability
Summary: LibreOffice could be made to run arbitrary code if an empty entry to the
java class path is configured.
It was discovered that LibreOffice may be configured to add an
empty entry to the Java class path. This may lead to run arbitrary
Java code from the current directory.
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
libreoffice: Empty entry in Java class path
vendor_redhat·2023-03-24·CVSS 7.8
CVE-2022-38745 [HIGH] CWE-427 libreoffice: Empty entry in Java class path
libreoffice: Empty entry in Java class path
Apache OpenOffice versions before 4.1.14 may be configured to add an empty entry to the Java class path. This may lead to run arbitrary Java code from the current directory.
A flaw was found in LibreOffice. When an empty Java class path entry is configured, LibreOffice will search for Java classes in the current working directory, allowing malicious Java classes to load when opening a document using the file manager, resulting in arbitrary code execution.
Statement: To exploit this flaw, an attacker would need to convince a user to extract an archive (tar, zip, etc) containing a LibreOffice document and a specific file with Java code inside it, and then the user would need to open the LibreOffice document normally. As user interaction is requi
Debian
CVE-2022-38745: libreoffice - Apache OpenOffice versions before 4.1.14 may be configured to add an empty entry...
vendor_debian·2022·CVSS 7.8
CVE-2022-38745 [HIGH] CVE-2022-38745: libreoffice - Apache OpenOffice versions before 4.1.14 may be configured to add an empty entry...
Apache OpenOffice versions before 4.1.14 may be configured to add an empty entry to the Java class path. This may lead to run arbitrary Java code from the current directory.
Scope: local
bookworm: resolved (fixed in 1:7.3.1-1)
bullseye: resolved (fixed in 1:7.0.4-4+deb11u6)
forky: resolved (fixed in 1:7.3.1-1)
sid: resolved (fixed in 1:7.3.1-1)
trixie: resolved (fixed in 1:7.3.1-1)
GHSA
GHSA-w32v-x9j2-mv46: Apache OpenOffice versions before 4
ghsa_unreviewed·2023-03-24
CVE-2022-38745 [HIGH] CWE-94 GHSA-w32v-x9j2-mv46: Apache OpenOffice versions before 4
Apache OpenOffice versions before 4.1.14 may be configured to add an empty entry to the Java class path. This may lead to run arbitrary Java code from the current directory.
OSV
CVE-2022-38745: Apache OpenOffice versions before 4
osv·2023-03-24·CVSS 7.8
CVE-2022-38745 [HIGH] CVE-2022-38745: Apache OpenOffice versions before 4
Apache OpenOffice versions before 4.1.14 may be configured to add an empty entry to the Java class path. This may lead to run arbitrary Java code from the current directory.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2023-03-24
Published