Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Heap buffer overflow in EMF+ gradient brush import
Vulnerability Description
LibreOffice can import EMF+ graphics, which may be embedded in documents. A heap buffer overflow existed when importing an EMF+ gradient brush. The number of gradient blend points was read from the file and used to compute an allocation size, but that multiplication could overflow, so a small buffer was allocated and then filled as if it were large, writing past its end. In fixed versions the blend-point count is checked against the data actually available before allocating.
CVSS Information
N/A
Vulnerability Type
跨界内存写
Vulnerability Title
The Document Foundation LibreOffice 数字错误漏洞
Vulnerability Description
The Document Foundation LibreOffice是The Document Foundation的办公套件。 The Document Foundation LibreOffice存在安全漏洞,该漏洞源于导入EMF+渐变画笔时存在堆缓冲区溢出,渐变混合点数从文件中读取并用于计算分配大小,但乘法可能溢出,导致分配小缓冲区后超限写入。
CVSS Information
N/A
Vulnerability Type
N/A