imPC@ndo IT

Tracker / CVE-2015-5214

CVE-2015-5214

Medium 6.8

LibreOffice before 4.4.6 and 5.x before 5.0.1 and Apache OpenOffice before 4.1.2 allows remote attackers to cause a denial of service (memory corruption and application crash) or execute arbitrary code via an index to a non-existent bookmark in a DOC file.

Affected products and versions

apache openoffice · … → 4.1.1
canonical ubuntu_linux
debian debian_linux
libreoffice libreoffice · … → 4.4.5

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References