Vulnerabilities > CVE-2007-4251 - Denial-Of-Service vulnerability in Openoffice 2.2

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
openoffice

Summary

OpenOffice.org (OOo) 2.2 does not properly handle files with multiple extensions, which allows user-assisted remote attackers to cause a denial of service.

Vulnerable Configurations

Part Description Count
Application
Openoffice
1

Statements

  • contributorVincent Danen
    lastmodified2007-09-18
    organizationMandriva
    statementThis issue crashes OpenOffice.org only if a user opens a malicious document. Mandriva does not consider this a security issue.
  • contributorMark J Cox
    lastmodified2007-08-14
    organizationRed Hat
    statementRed Hat does not consider this flaw a security issue. This flaw will only crash OpenOffice.org if a victim opens a malicious document.