cbcvebase.

Apache Openoffice vulnerabilities

59 known vulnerabilities affecting apache/openoffice.

Total CVEs
59
CISA KEV
0
Public exploits
1
Exploited in wild
1
Severity breakdown
CRITICAL15HIGH27MEDIUM17

Vulnerabilities

Page 3 of 3
CVE-2025-64402P3MEDIUMCVSS 6.5fixed in 4.1.162025-11-12
CVE-2025-64402 [MEDIUM] CWE-862 CVE-2025-64402: Apache OpenOffice documents can contain links. A missing Authorization vulnerability in Apache OpenO Apache OpenOffice documents can contain links. A missing Authorization vulnerability in Apache OpenOffice allowed an attacker to craft a document that would cause external links to be loaded without prompt. In the affected versions of Apache OpenOffice, documents that used "OLE objects" linked to external files would load the contents of those files
nvd
CVE-2010-4494P3HIGHCVSS 7.5≥ 2.1.0, ≤ 2.4.3≥ 3.0.0, < 3.3.02010-12-07
CVE-2010-4494 [HIGH] CWE-415 CVE-2010-4494: Double free vulnerability in libxml2 2.7.8 and other versions, as used in Google Chrome before 8.0.5 Double free vulnerability in libxml2 2.7.8 and other versions, as used in Google Chrome before 8.0.552.215 and other products, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to XPath handling.
nvd
CVE-2015-5214P3MEDIUMCVSS 6.8≤ 4.1.12015-11-10
CVE-2015-5214 [MEDIUM] CWE-119 CVE-2015-5214: LibreOffice before 4.4.6 and 5.x before 5.0.1 and Apache OpenOffice before 4.1.2 allows remote attac LibreOffice before 4.4.6 and 5.x before 5.0.1 and Apache OpenOffice before 4.1.2 allows remote attackers to cause a denial of service (memory corruption and application crash) or execute arbitrary code via an index to a non-existent bookmark in a DOC file.
nvd
CVE-2016-6803P3HIGHCVSS 7.8≤ 4.1.22017-11-13
CVE-2016-6803 [HIGH] CWE-426 CVE-2016-6803: An installer defect known as an "unquoted Windows search path vulnerability" affected the Apache Ope An installer defect known as an "unquoted Windows search path vulnerability" affected the Apache OpenOffice before 4.1.3 installers for Windows. The PC must have previously been infected by a Trojan Horse application (or user) running with administrative privilege. Any installer with the unquoted search path vulnerability becomes a delayed trigger for t
nvd
CVE-2018-11790P3HIGHCVSS 7.8≤ 4.1.52019-01-31
CVE-2018-11790 [HIGH] CWE-682 CVE-2018-11790: When loading a document with Apache Open Office 4.1.5 and earlier with smaller end line termination When loading a document with Apache Open Office 4.1.5 and earlier with smaller end line termination than the operating system uses, the defect occurs. In this case OpenOffice runs into an Arithmetic Overflow at a string length calculation.
nvd
CVE-2017-12608P4HIGHCVSS 7.8fixed in 4.1.42017-11-20
CVE-2017-12608 [HIGH] CWE-787 CVE-2017-12608: A vulnerability in Apache OpenOffice Writer DOC file parser before 4.1.4, and specifically in Import A vulnerability in Apache OpenOffice Writer DOC file parser before 4.1.4, and specifically in ImportOldFormatStyles, allows attackers to craft malicious documents that cause denial of service (memory corruption and application crash) potentially resulting in arbitrary code execution.
nvd
CVE-2021-40439P4MEDIUMCVSS 6.5≤ 4.1.102021-10-07
CVE-2021-40439 [MEDIUM] CVE-2021-40439: Apache OpenOffice has a dependency on expat software. Versions prior to 2.1.0 were subject to CVE-20 Apache OpenOffice has a dependency on expat software. Versions prior to 2.1.0 were subject to CVE-2013-0340 a "Billion Laughs" entity expansion denial of service attack and exploit via crafted XML files. ODF files consist of a set of XML files. All versions of Apache OpenOffice up to 4.1.10 are subject to this issue. expat in version 4.1.11 is patched.
nvd
CVE-2017-12607P4HIGHCVSS 7.8fixed in 4.1.42017-11-20
CVE-2017-12607 [HIGH] CWE-787 CVE-2017-12607: A vulnerability in OpenOffice's PPT file parser before 4.1.4, and specifically in PPTStyleSheet, all A vulnerability in OpenOffice's PPT file parser before 4.1.4, and specifically in PPTStyleSheet, allows attackers to craft malicious documents that cause denial of service (memory corruption and application crash) potentially resulting in arbitrary code execution.
nvd
CVE-2017-9806P4HIGHCVSS 7.8fixed in 4.1.42017-11-20
CVE-2017-9806 [HIGH] CWE-787 CVE-2017-9806: A vulnerability in the OpenOffice Writer DOC file parser before 4.1.4, and specifically in the WW8Fo A vulnerability in the OpenOffice Writer DOC file parser before 4.1.4, and specifically in the WW8Fonts Constructor, allows attackers to craft malicious documents that cause denial of service (memory corruption and application crash) potentially resulting in arbitrary code execution.
nvd
CVE-2014-3575P4MEDIUMCVSS 4.3fixed in 4.1.12014-08-27
CVE-2014-3575 [MEDIUM] CWE-200 CVE-2014-3575: The OLE preview generation in Apache OpenOffice before 4.1.1 and OpenOffice.org (OOo) might allow re The OLE preview generation in Apache OpenOffice before 4.1.1 and OpenOffice.org (OOo) might allow remote attackers to embed arbitrary data into documents via crafted OLE objects.
nvd
CVE-2025-64407P4MEDIUMCVSS 5.3fixed in 4.1.162025-11-12
CVE-2025-64407 [MEDIUM] CVE-2025-64407: Apache OpenOffice documents can contain links. A missing Authorization vulnerability in Apache OpenO Apache OpenOffice documents can contain links. A missing Authorization vulnerability in Apache OpenOffice allowed an attacker to craft a document that would cause external links to be loaded without prompt. Such links could also be used to transmit system information, such as environment variables or configuration settings. In the affected versions of Apac
nvd
CVE-2013-4156P4MEDIUMCVSS 6.8fixed in 4.0.02013-07-31
CVE-2013-4156 [MEDIUM] CWE-787 CVE-2013-4156: Apache OpenOffice.org (OOo) before 4.0 allows remote attackers to cause a denial of service (memory Apache OpenOffice.org (OOo) before 4.0 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted element in an OOXML document file.
nvd
CVE-2013-2189P4MEDIUMCVSS 6.8fixed in 4.0.02013-07-31
CVE-2013-2189 [MEDIUM] CWE-787 CVE-2013-2189: Apache OpenOffice.org (OOo) before 4.0 allows remote attackers to cause a denial of service (memory Apache OpenOffice.org (OOo) before 4.0 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via invalid PLCF data in a DOC document file.
nvd
CVE-2021-41831P4MEDIUMCVSS 5.3fixed in 4.1.112021-10-11
CVE-2021-41831 [MEDIUM] CVE-2021-41831: It is possible for an attacker to manipulate the timestamp of signed documents. All versions of Apac It is possible for an attacker to manipulate the timestamp of signed documents. All versions of Apache OpenOffice up to 4.1.10 are affected. Users are advised to update to version 4.1.11. See CVE-2021-25634 for the LibreOffice advisory.
nvd
CVE-2015-4551P4MEDIUMCVSS 4.3≤ 4.1.12015-11-10
CVE-2015-4551 [MEDIUM] CWE-200 CVE-2015-4551: LibreOffice before 4.4.5 and Apache OpenOffice before 4.1.2 uses the stored LinkUpdateMode configura LibreOffice before 4.4.5 and Apache OpenOffice before 4.1.2 uses the stored LinkUpdateMode configuration information in OpenDocument Format files and templates when handling links, which might allow remote attackers to obtain sensitive information via a crafted document, which embeds data from local files into (1) Calc or (2) Writer.
nvd
CVE-2017-3157P4MEDIUMCVSS 5.5≤ 4.1.32017-11-20
CVE-2017-3157 [MEDIUM] CWE-200 CVE-2017-3157: By exploiting the way Apache OpenOffice before 4.1.4 renders embedded objects, an attacker could cra By exploiting the way Apache OpenOffice before 4.1.4 renders embedded objects, an attacker could craft a document that allows reading in a file from the user's filesystem. Information could be retrieved by the attacker by, e.g., using hidden sections to store the information, tricking the user into saving the document and convincing the user to send t
nvd
CVE-2010-3689P4MEDIUMCVSS 6.9≥ 3.0.0, < 3.3.02011-01-28
CVE-2010-3689 [MEDIUM] CWE-22 CVE-2010-3689: soffice in OpenOffice.org (OOo) 3.x before 3.3 places a zero-length directory name in the LD_LIBRARY soffice in OpenOffice.org (OOo) 3.x before 3.3 places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory.
nvd
CVE-2025-64406P4MEDIUMCVSS 4.3fixed in 4.1.162025-11-12
CVE-2025-64406 [MEDIUM] CWE-787 CVE-2025-64406: An out-of-bounds Write vulnerability in Apache OpenOffice could allow an attacker to craft a documen An out-of-bounds Write vulnerability in Apache OpenOffice could allow an attacker to craft a document that would crash the program, or otherwise corrupt other memory areas. This issue affects Apache OpenOffice: through 4.1.15. Users are recommended to upgrade to version 4.1.16, which fixes the issue.
nvd
CVE-2010-4008P4MEDIUMCVSS 4.3≥ 2.0.0, ≤ 2.4.3≥ 3.0.0, < 3.3.02010-11-17
CVE-2010-4008 [MEDIUM] CWE-119 CVE-2010-4008: libxml2 before 2.7.8, as used in Google Chrome before 7.0.517.44, Apple Safari 5.0.2 and earlier, an libxml2 before 2.7.8, as used in Google Chrome before 7.0.517.44, Apple Safari 5.0.2 and earlier, and other products, reads from invalid memory locations during processing of malformed XPath expressions, which allows context-dependent attackers to cause a denial of service (application crash) via a crafted XML document.
nvd
Apache Openoffice vulnerabilities | cvebase