Vulnerability Name:

CVE-2011-2685 (CCN-68162)

Assigned:2011-06-22
Published:2011-06-22
Updated:2012-01-19
Summary:Stack-based buffer overflow in the Lotus Word Pro import filter in LibreOffice before 3.3.3 allows remote attackers to execute arbitrary code via a crafted .lwp file.
CVSS v3 Severity:7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): Low
Integrity (I): Low
Availibility (A): Low
CVSS v2 Severity:9.3 High (CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C)
6.9 Medium (Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Medium
Authentication (Au): None
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
6.8 Medium (CCN CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P)
5.0 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Medium
Athentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
Vulnerability Type:CWE-119
Vulnerability Consequences:Gain Access
References:Source: MISC
Type: Patch
http://cgit.freedesktop.org/libreoffice/filters/commit/?id=278831e37a23e9e2e29ca811c3a5398b7c67464d

Source: MISC
Type: Patch
http://cgit.freedesktop.org/libreoffice/filters/commit/?id=d93fa011d713100775cd3ac88c468b6830d48877

Source: MITRE
Type: CNA
CVE-2011-2685

Source: SUSE
Type: UNKNOWN
openSUSE-SU-2011:1143

Source: CCN
Type: SA44996
LibreOffice LWP File Processing Buffer Overflow Vulnerabilities

Source: CCN
Type: US-CERT VU#953183
LibreOffice 3.3 'Lotus Word Pro' document import filter contains multiple vulnerabilities

Source: CERT-VN
Type: Patch, US Government Resource
VU#953183

Source: CCN
Type: LibreOffice Web site
LibreOffice

Source: MANDRIVA
Type: UNKNOWN
MDVSA-2011:172

Source: MLIST
Type: UNKNOWN
[oss-security] 20110706 libreoffice/openoffice.org CVE id request

Source: MLIST
Type: UNKNOWN
[oss-security] 20110712 Re: libreoffice/openoffice.org CVE id request

Source: CCN
Type: OSVDB ID: 73314
LibreOffice LWP File Handling Overflow

Source: CCN
Type: BID-48387
LibreOffice '.lwp' File Multiple Remote Stack Buffer Overflow Vulnerabilities

Source: XF
Type: UNKNOWN
libreoffice-lwp-bo(68162)

Vulnerable Configuration:Configuration 1:
  • cpe:/a:libreoffice:libreoffice:3.3.0:*:*:*:*:*:*:*
  • OR cpe:/a:libreoffice:libreoffice:3.3.1:*:*:*:*:*:*:*
  • OR cpe:/a:libreoffice:libreoffice:*:*:*:*:*:*:*:* (Version <= 3.3.2)

  • Configuration CCN 1:
  • cpe:/a:libreoffice:libreoffice:3.3.2:*:*:*:*:*:*:*
  • OR cpe:/a:libreoffice:libreoffice:3.3.1:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:20112685
    V
    CVE-2011-2685
    2022-05-20
    oval:org.opensuse.security:def:33984
    P
    Security update for apache2 (Important)
    2021-10-06
    oval:org.opensuse.security:def:32978
    P
    Security update for MozillaFirefox (Important)
    2021-08-17
    oval:org.opensuse.security:def:32891
    P
    Security update for openexr (Moderate)
    2021-04-07
    oval:org.opensuse.security:def:28942
    P
    Security update for java-1_8_0-ibm (Important)
    2021-02-26
    oval:org.opensuse.security:def:34023
    P
    Security update for jasper (Important)
    2021-02-16
    oval:org.opensuse.security:def:32834
    P
    Security update for curl (Moderate)
    2020-12-18
    oval:org.opensuse.security:def:28858
    P
    Security update for python-cryptography (Moderate)
    2020-12-04
    oval:org.opensuse.security:def:29297
    P
    Security update for python-setuptools (Important)
    2020-12-02
    oval:org.opensuse.security:def:29148
    P
    Security update for kvm (Important)
    2020-12-01
    oval:org.opensuse.security:def:28517
    P
    Security update for openssl1 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29236
    P
    Security update for samba (Important)
    2020-12-01
    oval:org.opensuse.security:def:28716
    P
    Security update for java-1_7_0-openjdk (Critical)
    2020-12-01
    oval:org.opensuse.security:def:32515
    P
    fuse on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33191
    P
    libvorbis on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32527
    P
    gtk2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29971
    P
    Security update for LibreOffice
    2020-12-01
    oval:org.opensuse.security:def:33279
    P
    vino on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29094
    P
    Recommended update for ghostscript-library (Important)
    2020-12-01
    oval:org.opensuse.security:def:32740
    P
    libxslt on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28506
    P
    Security update for openssh-openssl1 (Important)
    2020-12-01
    oval:org.opensuse.security:def:33346
    P
    Security update for openssh-openssl1 (Critical)
    2020-12-01
    oval:org.opensuse.security:def:29197
    P
    Security update for openssh (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28585
    P
    Security update for libvirt
    2020-12-01
    oval:org.opensuse.security:def:29253
    P
    Security update for tcpdump (Important)
    2020-12-01
    oval:org.opensuse.security:def:33134
    P
    libFLAC++6 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28801
    P
    Security update for openssh (Critical)
    2020-12-01
    oval:org.opensuse.security:def:32516
    P
    fvwm2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:29935
    P
    Security update for libidn (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33240
    P
    pure-ftpd on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32605
    P
    sudo on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:28505
    P
    Security update for openssh-openssl1 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33302
    P
    xorg-x11-libxcb-32bit on GA media (Moderate)
    2020-12-01
    oval:org.mitre.oval:def:17917
    P
    USN-1496-1 -- openoffice.org vulnerabilities
    2014-06-30
    oval:com.ubuntu.precise:def:20112685000
    V
    CVE-2011-2685 on Ubuntu 12.04 LTS (precise) - low.
    2011-07-21
    BACK
    libreoffice libreoffice 3.3.0
    libreoffice libreoffice 3.3.1
    libreoffice libreoffice *
    libreoffice libreoffice 3.3.2
    libreoffice libreoffice 3.3.1