First published: Tue Aug 26 2014(Updated: )
Apache OpenOffice before 4.1.1 allows remote attackers to execute arbitrary commands and possibly have other unspecified impact via a crafted Calc spreadsheet.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apache OpenOffice | <4.1.1 | |
LibreOffice Draw | <4.2.6 | |
LibreOffice Draw | >=4.3.0<4.3.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-3524 is classified as a high-severity vulnerability that allows remote code execution.
To fix CVE-2014-3524, upgrade Apache OpenOffice to version 4.1.1 or later and LibreOffice to version 4.2.7 or later.
CVE-2014-3524 affects Apache OpenOffice prior to 4.1.1 and LibreOffice versions 4.2.6 and prior as well as versions between 4.3.0 and 4.3.1.
An attacker can execute arbitrary commands on the victim's system by exploiting a crafted Calc spreadsheet.
The impact of CVE-2014-3524 is significant as it can potentially allow unauthorized access and control over vulnerable systems.