CVE-2017-8358: Buffer Overflow
Published Apr 30, 2017
·Updated
LibreOffice before 2017-03-17 has an out-of-bounds write caused by a heap-based buffer overflow related to the ReadJPEG function in vcl/source/filter/jpeg/jpegc.cxx.
Affected Software
1 affected component
LibreOffice Libreoffice<=5.2.6
Remediation
Event History
Apr 30, 2017
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-8358?
CVE-2017-8358 is considered to have a high severity due to the potential for remote code execution.
2
How do I fix CVE-2017-8358?
To fix CVE-2017-8358, update LibreOffice to version 5.2.7 or later.
3
What causes CVE-2017-8358?
CVE-2017-8358 is caused by an out-of-bounds write due to a heap-based buffer overflow in the ReadJPEG function.
4
Which versions of LibreOffice are affected by CVE-2017-8358?
CVE-2017-8358 affects LibreOffice versions up to and including 5.2.6.
5
Is CVE-2017-8358 a local or remote vulnerability?
CVE-2017-8358 is a remote vulnerability, as it can be exploited through malicious JPEG files.