Bugzilla – Bug 1065986
VUL-1: CVE-2017-12607: libreoffice: Out-of-bounds write in the PPTStyleSheet::PPTStyleSheet functionality
Last modified: 2018-02-12 21:10:23 UTC
rh#1507805 An exploitable out of bound write vulnerability exists in the PPTStyleSheet::PPTStyleSheet functionality of Apache OpenOffice. A specially crafted PPT file can cause an out of bound write resulting in arbitrary code execution. An attacker can send/provide a malicious PPT file to trigger this vulnerability. References: https://bugzilla.redhat.com/show_bug.cgi?id=1507805 https://www.talosintelligence.com/reports/TALOS-2017-0300 https://www.openoffice.org/security/cves/CVE-2017-12607.html https://www.libreoffice.org/about-us/security/advisories/CVE-2017-12607
Not on our products, affects 5.0.2 and older.
upstream fixed