Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2010-2935

simpress.bin in the Impress module in OpenOffice.org (OOo) 2.x and 3.x before 3.3 does not properly handle integer values associated with dictionary property items, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PowerPoint document that triggers a heap-based buffer overflow, related to an "integer truncation error."
Exploit prediction scoring system (EPSS) score
EPSS Score 0.097
EPSS Ranking 92.5%
CVSS Severity
CVSS v2 Score 9.3
References
Products affected by CVE-2010-2935


Contact Us

Shodan ® - All rights reserved