CVE-2008-0320
OpenOffice OLE Importer DocumentSummaryInformation Stream Handling Overflow
Title source: metasploitExploitation Summary
EIP tracks 2 public exploits for CVE-2008-0320.
PoCs published by Metasploit, including Metasploit module exploits/windows/fileformat/openoffice_ole.
AI-analyzed exploit summary This Metasploit module exploits a buffer overflow in OpenOffice 2.3.1 and 2.3.0 by crafting a malformed OLE file with a manipulated DocumentSummaryInformation stream, leading to arbitrary code execution on Windows XP SP3.
Description
Heap-based buffer overflow in the OLE importer in OpenOffice.org before 2.4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via an OLE file with a crafted DocumentSummaryInformation stream.
Exploits (2)
This Metasploit module exploits a buffer overflow in OpenOffice 2.3.1 and 2.3.0 by crafting a malformed OLE file with a manipulated DocumentSummaryInformation stream, leading to arbitrary code execution on Windows XP SP3.
This Metasploit module exploits a buffer overflow in OpenOffice 2.3.1 and 2.3.0 by crafting a malformed OLE file with a manipulated DocumentSummaryInformation stream, leading to arbitrary code execution on Windows XP SP3.