CVE-2009-0259
45Vexday Risk Score
Prioritize patching. It exploitation observed by VulnCheck and has a public proof of concept.
ssvc Actepss 7.5%
from disclosure to weapon
Published on NVDJan 22
VulnCheckJan 21
exploitation probability
7.5%top 6% of all CVEs
observed exploitation
yesVulnCheck
1 public exploit(s)
The Word processor in OpenOffice.org 1.1.2 through 1.1.5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted (1) .doc, (2) .wri, or (3) .rtf Word 97 file that triggers memory corruption, as exploited in the wild in December 2008, as demonstrated by 2008-crash.doc.rar, and a similar issue to CVE-2008-4841.
Affected products
n/a · n/apublic PoCs found — 1✓ VexDay Proof
cve_reference✓ VexDay Proofwww.exploit-db.com/exploits/6560⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.