CVE-2006-6628

OpenOffice.org 2.1 - Denial of Service via Crafted DOC File

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2006-6628. PoCs published by DiscoJonny.

AI-analyzed exploit summary The provided text describes a two-stage memory corruption vulnerability in Microsoft Word Viewer, detailing specific memory offsets and values used to trigger a crash or potential pointer overwrite. It includes a reference to a PoC document but does not contain functional exploit code.

Description

Integer overflow in OpenOffice.org (OOo) 2.1 allows user-assisted remote attackers to cause a denial of service (application crash) via a crafted DOC file, as demonstrated by the 12122006-djtest.doc file, a variant of CVE-2006-6561 in a separate codebase.

Exploits (1)

exploitdb WRITEUP VERIFIED
by DiscoJonny · textdoswindows
https://www.exploit-db.com/exploits/2922

The provided text describes a two-stage memory corruption vulnerability in Microsoft Word Viewer, detailing specific memory offsets and values used to trigger a crash or potential pointer overwrite. It includes a reference to a PoC document but does not contain functional exploit code.

Classification
Writeup 80%
Attack Type
Other
Complexity
Moderate
Reliability
Theoretical
Target: Microsoft Word Viewer
No auth needed
Prerequisites: Access to a vulnerable version of Microsoft Word Viewer · Ability to deliver a crafted document to the target
mistral-large-3 · analyzed Feb 18, 2026 Full analysis →

References (8)

Core 8
Core References
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/454722/100/0/threaded
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2006/5051
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/454514/100/0/threaded
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/454545/100/0/threaded
Third Party Advisory third-party-advisory x_refsource_sreason
http://securityreason.com/securityalert/2043
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/21618
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/454737/100/0/threaded

Scores

EPSS 0.0361
EPSS Percentile 88.3%

Details

Status published
Products (1)
openoffice/openoffice 2.1
Published Dec 18, 2006
Tracked Since Feb 18, 2026