漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Heap buffer overflow in EMF+ gradient brush import
Vulnerability Description
LibreOffice can import EMF+ graphics, which may be embedded in documents. A heap buffer overflow existed when importing an EMF+ gradient brush. The number of gradient blend points was read from the file and used to compute an allocation size, but that multiplication could overflow, so a small buffer was allocated and then filled as if it were large, writing past its end. In fixed versions the blend-point count is checked against the data actually available before allocating.
CVSS Information
N/A
Vulnerability Type
跨界内存写
Vulnerability Title
The Document Foundation LibreOffice 数字错误漏洞
Vulnerability Description
The Document Foundation LibreOffice是The Document Foundation的办公套件。 The Document Foundation LibreOffice存在安全漏洞,该漏洞源于导入EMF+渐变画笔时存在堆缓冲区溢出,渐变混合点数从文件中读取并用于计算分配大小,但乘法可能溢出,导致分配小缓冲区后超限写入。
CVSS Information
N/A
Vulnerability Type
N/A