CVE-2017-12608
CVE-2017-12608
Vexday Risk Score
3Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS —EPSS 2.9%KEV nãoPoC —Nuclei —Metasploit —Patch referenciado
Ciclo de vida
20 nov 2017Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
A vulnerability in Apache OpenOffice Writer DOC file parser before 4.1.4, and specifically in ImportOldFormatStyles, allows attackers to craft malicious documents that cause denial of service (memory corruption and application crash) potentially resulting in arbitrary code execution.
Productos afectados
Apache Software Foundation · Apache OpenOffice¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →Referencias
https://lists.debian.org/debian-lts-announce/2017/12/msg00017.htmlhttps://www.debian.org/security/2017/dsa-4022https://www.openoffice.org/security/cves/CVE-2017-12608.htmlhttp://www.securityfocus.com/bid/101585http://www.securitytracker.com/id/1039733http://www.securitytracker.com/id/1039735