cpe:/a:openoffice:openoffice.org:2.0.3 cpe:/a:openoffice:openoffice.org:2.1 cpe:/a:openoffice:openoffice.org:2.2 cpe:/a:openoffice:openoffice.org:2.2.1 cpe:/a:openoffice:openoffice.org:2.3 cpe:/a:openoffice:openoffice.org:2.3.1 CVE-2008-0320 2008-04-17T15:05:00.000-04:00 2017-09-28T21:30:13.003-04:00 9.3 NETWORK MEDIUM NONE COMPLETE COMPLETE COMPLETE http://nvd.nist.gov 2008-04-18T09:48:00.000-04:00 SECTRACK 1019890 IDEFENSE 20080417 Multiple Vendor OpenOffice OLE DocumentSummaryInformation Heap Overflow Vulnerability SUNALERT 231642 BID 28819 SECUNIA 29844 SECUNIA 29852 SECUNIA 29864 SECUNIA 29871 SECUNIA 29910 SECUNIA 29913 SECUNIA 29987 SECUNIA 30100 SECUNIA 30179 VUPEN ADV-2008-1253 VUPEN ADV-2008-1375 DEBIAN DSA-1547 FEDORA FEDORA-2008-3251 GENTOO GLSA-200805-16 MANDRIVA MDVSA-2008:090 MANDRIVA MDVSA-2008:095 REDHAT RHSA-2008:0175 REDHAT RHSA-2008:0176 SUSE SUSE-SA:2008:023 UBUNTU USN-609-1 CONFIRM http://www.openoffice.org/security/bulletin.html CONFIRM http://www.openoffice.org/security/cves/CVE-2007-4770.html CONFIRM http://www.openoffice.org/security/cves/CVE-2007-5745.html CONFIRM http://www.openoffice.org/security/cves/CVE-2008-0320.html XF openoffice-ole-bo(41860) Heap-based buffer overflow in the OLE importer in OpenOffice.org before 2.4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via an OLE file with a crafted DocumentSummaryInformation stream.