CVE-2002-2210: Medium severity OpenOffice OpenOffice vulnerability
Published Dec 31, 2002
·Updated
The installation of OpenOffice 1.0.1 allows local users to overwrite files and possibly gain privileges via a symlink attack on the USERNAMEautoresponse.conf temporary file.
Affected Software
1 affected component
OpenOffice OpenOffice=1.0.1
Event History
Dec 31, 2002
CVE Published
05:00 AM
Data Sourced
via NVD·05:00 AM
DescriptionSeverityAffected Software
Apr 4, 2006
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-2210?
CVE-2002-2210 has a medium severity level due to its potential for privilege escalation through a symlink attack.
2
How do I fix CVE-2002-2210?
To fix CVE-2002-2210, update to a later version of OpenOffice that does not allow the creation of symlinks in the temporary file path.
3
What versions of OpenOffice are affected by CVE-2002-2210?
OpenOffice version 1.0.1 is specifically affected by CVE-2002-2210.
4
Can CVE-2002-2210 be exploited remotely?
CVE-2002-2210 requires local access to the system, making it not exploitable remotely.
5
What type of vulnerability is CVE-2002-2210?
CVE-2002-2210 is a local file overwrite vulnerability resulting from improper handling of temporary files.