CVE-2009-0200

Severity CVSS v4.0:
Pending analysis
Type:
CWE-189 Numeric Errors
Publication date:
02/09/2009
Last modified:
09/04/2025

Description

Integer underflow in OpenOffice.org (OOo) before 3.1.1 and StarOffice/StarSuite 7, 8, and 9 might allow remote attackers to execute arbitrary code via crafted records in the document table of a Word document, leading to a heap-based buffer overflow.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:openoffice:openoffice.org:*:*:*:*:*:*:*:* 3.1 (including)
cpe:2.3:a:openoffice:openoffice.org:1.0-ru:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.0.0:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.0.1:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.0.2:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.0.3.1:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.1:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.1:beta:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.1:beta2:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.1:rc1:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.1:rc3:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.1.1:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.1.2:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.1.3:*:*:*:*:*:*:*
cpe:2.3:a:openoffice:openoffice.org:1.1.4:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools