Description
simpress.bin in the Impress module in OpenOffice.org (OOo) 2.x and 3.x before 3.3 does not properly handle integer values associated with dictionary property items, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PowerPoint document that triggers a heap-based buffer overflow, related to an "integer truncation error."
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-2099-1 | New OpenOffice.org packages fix arbitrary code execution |
EUVD |
EUVD-2010-2939 | simpress.bin in the Impress module in OpenOffice.org (OOo) 2.x and 3.x before 3.3 does not properly handle integer values associated with dictionary property items, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PowerPoint document that triggers a heap-based buffer overflow, related to an "integer truncation error." |
Ubuntu USN |
USN-1056-1 | OpenOffice.org vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-07T02:46:48.941Z
Reserved: 2010-08-04T00:00:00.000Z
Link: CVE-2010-2935
No data.
Status : Deferred
Published: 2010-08-25T20:00:17.643
Modified: 2025-04-11T00:51:21.963
Link: CVE-2010-2935
OpenCVE Enrichment
No data.
Weaknesses
Debian DSA
EUVD
Ubuntu USN