CVE-2005-2971
KOffice 1.2.0-1.4.1 - Remote Code Execution via RTF File Parsing
Title source: llmDescription
Heap-based buffer overflow in the KWord RTF importer for KOffice 1.2.0 through 1.4.1 allows remote attackers to execute arbitrary code via a crafted RTF file.
References (18)
Core 18
Core References
Vendor Advisory vendor-advisory
x_refsource_fedora
http://www.redhat.com/archives/fedora-announce-list/2005-October/msg00042.html
Patch vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/15060
Third Party Advisory, VDB Entry vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/22562
Third Party Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/17480
Third Party Advisory, VDB Entry vdb-entry
x_refsource_sectrack
http://securitytracker.com/id?1015035
Vendor Advisory vendor-advisory
x_refsource_slackware
http://slackware.com/security/viewer.php?l=slackware-security&y=2005&m=slackware-security.388487
Exploit, Vendor Advisory x_refsource_misc
http://scary.beasts.org/security/CESA-2005-005.txt
Vendor Advisory vendor-advisory
x_refsource_suse
http://www.novell.com/linux/security/advisories/2005_25_sr.html
Third Party Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/17171
Patch, Vendor Advisory vendor-advisory
x_refsource_gentoo
http://www.gentoo.org/security/en/glsa/glsa-200510-12.xml
Third Party Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/17212
Third Party Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/17332
Third Party Advisory vendor-advisory
x_refsource_debian
http://www.debian.org/security/2005/dsa-872
Third Party Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/17486
Third Party Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/17190
Vendor Advisory vendor-advisory
x_refsource_ubuntu
https://usn.ubuntu.com/202-1/
Patch, Vendor Advisory x_refsource_confirm
http://www.kde.org/info/security/advisory-20051011-1.txt
Patch, Vendor Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/17145/
Scores
EPSS
0.0652
EPSS Percentile
91.2%
Details
Status
published
Products (13)
kde/koffice
1.2
kde/koffice
1.2.1
kde/koffice
1.3
kde/koffice
1.3.1
kde/koffice
1.3.2
kde/koffice
1.3.3
kde/koffice
1.3.4
kde/koffice
1.3.5
kde/koffice
1.3_beta1
kde/koffice
1.3_beta2
... and 3 more
Published
Oct 20, 2005
Tracked Since
Feb 18, 2026