First published: Fri Apr 14 2017(Updated: )
LibreOffice before 2017-01-02 has an out-of-bounds write caused by a heap-based buffer overflow related to the tools::Polygon::Insert function in tools/source/generic/poly.cxx.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/libreoffice | <5.2.5 | 5.2.5 |
redhat/libreoffice | <5.3.0 | 5.3.0 |
The Document Foundation LibreOffice | <=5.3.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-7870 has a medium severity rating due to its potential to cause a heap-based buffer overflow.
To fix CVE-2017-7870, upgrade LibreOffice to versions 5.2.5 or 5.3.0 and later.
Versions of LibreOffice prior to 5.2.5 and 5.3.0 are affected by CVE-2017-7870.
CVE-2017-7870 is associated with an out-of-bounds write caused by heap-based buffer overflow in the tools::Polygon::Insert function.
Yes, CVE-2017-7870 is a known vulnerability affecting specific versions of LibreOffice distributed by Red Hat.