The HWP filter in LibreOffice before 4.3.7 and 4.4.x before 4.4.2 and Apache OpenOffice before 4.1.2 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted HWP document, which triggers an out-of-bounds write.
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "browser-plugin-libreoffice" }, { "binary_version": "2:102.6+LibO4.2.8-0ubuntu2", "binary_name": "fonts-opensymbol" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-avmedia-backend-gstreamer" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-base" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-base-core" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-base-drivers" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-calc" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-common" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-core" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-dbg" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-dev" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-dev-doc" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-draw" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-emailmerge" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-gnome" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-gtk" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-gtk3" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-impress" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-java-common" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-kde" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-l10n-in" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-l10n-ku" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-l10n-za" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-librelogo" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-math" }, { "binary_version": "1.0.2+LibO4.2.8-0ubuntu2", "binary_name": "libreoffice-mysql-connector" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-officebean" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-ogltrans" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-pdfimport" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-presentation-minimizer" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-presenter-console" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-report-builder" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-report-builder-bin" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-script-provider-bsh" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-script-provider-js" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-script-provider-python" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-sdbc-firebird" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-sdbc-hsqldb" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-sdbc-postgresql" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-style-crystal" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-style-galaxy" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-style-hicontrast" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-style-human" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-style-oxygen" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-style-sifr" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-style-tango" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-subsequentcheckbase" }, { "binary_version": "1.1.2+LibO4.2.8-0ubuntu2", "binary_name": "libreoffice-wiki-publisher" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "libreoffice-writer" }, { "binary_version": "2:1.0+LibO4.2.8-0ubuntu2", "binary_name": "openoffice.org-dtd-officedocument1.0" }, { "binary_version": "1:4.2.8-0ubuntu2", "binary_name": "python3-uno" }, { "binary_version": "4.2.8-0ubuntu2", "binary_name": "uno-libs3" }, { "binary_version": "4.2.8-0ubuntu2", "binary_name": "uno-libs3-dbg" }, { "binary_version": "4.2.8-0ubuntu2", "binary_name": "ure" }, { "binary_version": "4.2.8-0ubuntu2", "binary_name": "ure-dbg" } ] }