PublicCVE

CVE-2017-9806

UNRATED

Description

A vulnerability in the OpenOffice Writer DOC file parser before 4.1.4, and specifically in the WW8Fonts Constructor, allows attackers to craft malicious documents that cause denial of service (memory corruption and application crash) potentially resulting in arbitrary code execution.

Affected products

  • Apache Software Foundation / Apache OpenOffice4.0.0 to 4.1.3, and some previous releases, including some using our old OpenOffice.org brand – 4.0.0 to 4.1.3, and some previous releases, including some using our old OpenOffice.org brand