CVE-2015-5212

LibreOffice <4.4.5 & Apache OpenOffice <4.1.2 - Memory Corruption

Title source: llm

Description

Integer underflow in LibreOffice before 4.4.5 and Apache OpenOffice before 4.1.2, when the configuration setting "Load printer settings with the document" is enabled, allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via crafted PrinterSetup data in an ODF document.

Scores

EPSS 0.4958
EPSS Percentile 97.8%

Classification

CWE
CWE-191
Status draft

Affected Products (7)

libreoffice/libreoffice < 4.4.4
apache/openoffice < 4.1.1
canonical/ubuntu_linux
canonical/ubuntu_linux
canonical/ubuntu_linux
debian/debian_linux
debian/debian_linux

Timeline

Published Nov 10, 2015
Tracked Since Feb 18, 2026