CVE-2015-1774: Medium severity Canonical Ubuntu Linux vulnerability
The HWP filter in LibreOffice before 4.3.7 and 4.4.x before 4.4.2 and Apache OpenOffice before 4.1.2 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted HWP document, which triggers an out-of-bounds write.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-1774?
CVE-2015-1774 has a high severity due to its potential to cause denial of service or arbitrary code execution.
How do I fix CVE-2015-1774?
To fix CVE-2015-1774, upgrade LibreOffice to version 4.3.7 or later, or update Apache OpenOffice to version 4.1.2 or later.
What types of attacks are possible with CVE-2015-1774?
CVE-2015-1774 can allow remote attackers to execute arbitrary code or crash the application by using a crafted HWP document.
Which software versions are affected by CVE-2015-1774?
CVE-2015-1774 affects LibreOffice versions prior to 4.3.7, 4.4.x before 4.4.2, and Apache OpenOffice versions prior to 4.1.2.
Can CVE-2015-1774 affect my system if I don’t use LibreOffice or Apache OpenOffice?
If you do not use LibreOffice or Apache OpenOffice, your system is not at risk from CVE-2015-1774.