simpress.bin in the Impress module in OpenOffice.org (OOo) 2.x and 3.x before 3.3 does not properly handle integer values associated with dictionary property items, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PowerPoint document that triggers a heap-based buffer overflow, related to an "integer truncation error."
References
Configurations
Configuration 1 (hide)
AND |
|
History
No history.
Information
Published : 2010-08-25 20:00
Updated : 2024-02-04 17:54
NVD link : CVE-2010-2935
Mitre link : CVE-2010-2935
CVE.ORG link : CVE-2010-2935
JSON object : View
Products Affected
microsoft
- windows
openoffice
- openoffice.org
CWE
CWE-189
Numeric Errors