CVE-2005-0941: Buffer Overflow
The StgCompObjStream::Load function in OpenOffice.org OpenOffice 1.1.4 and earlier allocates memory based on 16 bit length values, but process memory using 32 bit values, which allows remote attackers to cause a denial of service and possibly execute arbitrary code via a DOC document with certain length values, which leads to a heap-based buffer overflow.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2005-0941?
CVE-2005-0941 is classified as a high severity vulnerability due to its potential for remote code execution and denial of service.
How do I fix CVE-2005-0941?
To mitigate CVE-2005-0941, upgrade OpenOffice to a version later than 1.1.4 that has addressed this vulnerability.
What software versions are affected by CVE-2005-0941?
CVE-2005-0941 affects OpenOffice versions up to and including 1.1.4 and earlier versions such as 1.0.1 to 1.1.3.
What type of attacks can exploit CVE-2005-0941?
CVE-2005-0941 can be exploited by sending specially crafted DOC documents to cause denial of service and potentially execute arbitrary code.
Is CVE-2005-0941 still relevant today?
While CVE-2005-0941 is an older vulnerability, it remains relevant for organizations still using outdated versions of OpenOffice.