CVE-2012-0037
Published: 22 March 2012
Redland Raptor (aka libraptor) before 2.0.7, as used by OpenOffice 3.3 and 3.4 Beta, LibreOffice before 3.4.6 and 3.5.x before 3.5.1, and other products, allows user-assisted remote attackers to read arbitrary files via a crafted XML external entity (XXE) declaration and reference in an RDF document.
Notes
Author | Note |
---|---|
jdstrand | Per Sweetchark, only a LibreOffice issue if using internal raptor Debian's patch for 1.4.21 from David Beckett based on patch sent to linux-distros@ per RedHat, arbitrary code execution is possible as well 1.4.21-7 is claimed to be fixed in Debian. While a patch was added, the quilt series file was not updated so the patch was not applied. |
Priority
Status
Package | Release | Status |
---|---|---|
libreoffice Launchpad, Ubuntu, Debian |
hardy |
Does not exist
|
lucid |
Does not exist
|
|
maverick |
Does not exist
|
|
natty |
Not vulnerable
(uses system raptor)
|
|
oneiric |
Not vulnerable
(uses system raptor)
|
|
precise |
Not vulnerable
(1:3.5.3-0ubuntu1)
|
|
quantal |
Not vulnerable
|
|
raring |
Not vulnerable
|
|
upstream |
Released
(3.4.6, 3.5.1)
|
|
openoffice.org Launchpad, Ubuntu, Debian |
hardy |
Ignored
(end of life)
|
lucid |
Not vulnerable
(uses system raptor)
|
|
maverick |
Ignored
(end of life)
|
|
natty |
Not vulnerable
(transitional packages)
|
|
oneiric |
Not vulnerable
(transitional packages)
|
|
precise |
Not vulnerable
(transitional packages)
|
|
quantal |
Does not exist
|
|
raring |
Does not exist
|
|
upstream |
Needs triage
|
|
Patches: other: http://mail-archives.apache.org/mod_mbox/incubator-ooo-commits/201201.mbox/%3C20120112081652.0B5CD2388860@eris.apache.org%3E |
||
raptor Launchpad, Ubuntu, Debian |
hardy |
Ignored
(end of life)
|
lucid |
Released
(1.4.21-1ubuntu1.1)
|
|
maverick |
Ignored
(end of life)
|
|
natty |
Released
(1.4.21-2ubuntu0.1)
|
|
oneiric |
Released
(1.4.21-5ubuntu0.1)
|
|
precise |
Released
(1.4.21-7ubuntu0.1)
|
|
quantal |
Released
(1.4.21-7ubuntu1)
|
|
raring |
Not vulnerable
|
|
upstream |
Released
(1.4.21-7.1)
|
|
Patches: vendor: http://www.debian.org/security/2012/dsa-2438 upstream: https://github.com/dajobe/raptor/commit/a676f235309a59d4aa78eeffd2574ae5d341fcb0.patch |
||
raptor2 Launchpad, Ubuntu, Debian |
lucid |
Does not exist
|
precise |
Released
(2.0.6-1ubuntu0.1)
|
|
quantal |
Not vulnerable
(2.0.8-1)
|
|
raring |
Not vulnerable
(2.0.8-2)
|
|
upstream |
Released
(2.0.7)
|
|
Patches: upstream: https://github.com/dajobe/raptor/commit/a9ddbb9d804264ed6b9cf9f6d46eed77b515b5d1.patch upstream: https://github.com/dajobe/raptor/commit/359a56a5774dbde8d7a773c4c60aaed53abecc8c.patch upstream: https://github.com/dajobe/raptor/commit/a676f235309a59d4aa78eeffd2574ae5d341fcb0.patch |
Severity score breakdown
Parameter | Value |
---|---|
Base score | 6.5 |
Attack vector | Network |
Attack complexity | Low |
Privileges required | None |
User interaction | Required |
Scope | Unchanged |
Confidentiality | High |
Integrity impact | None |
Availability impact | None |
Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N |
References
- http://blog.documentfoundation.org/2012/03/22/tdf-announces-libreoffice-3-4-6/
- http://www.openoffice.org/security/cves/CVE-2012-0037.html
- http://www.openoffice.org/security/cves/CVE-2012-0037-src.txt
- https://www.libreoffice.org/advisories/CVE-2012-0037/
- https://ubuntu.com/security/notices/USN-1480-1
- https://ubuntu.com/security/notices/USN-1901-1
- https://www.cve.org/CVERecord?id=CVE-2012-0037
- NVD
- Launchpad
- Debian