Rapid7 Vulnerability & Exploit Database

SUSE: CVE-2015-1774: SUSE Linux Security Advisory

Back to Search

SUSE: CVE-2015-1774: SUSE Linux Security Advisory

Severity
7
CVSS
(AV:N/AC:M/Au:N/C:P/I:P/A:P)
Published
04/28/2015
Created
07/25/2018
Added
12/18/2015
Modified
05/07/2019

Description

The HWP filter in LibreOffice before 4.3.7 and 4.4.x before 4.4.2 and Apache OpenOffice before 4.1.2 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted HWP document, which triggers an out-of-bounds write.

Solution(s)

  • suse-upgrade-apache-commons-logging
  • suse-upgrade-cmis-client
  • suse-upgrade-flute
  • suse-upgrade-graphite2
  • suse-upgrade-graphite2-devel
  • suse-upgrade-hyphen
  • suse-upgrade-hyphen-devel
  • suse-upgrade-libabw
  • suse-upgrade-libabw-0_1-1
  • suse-upgrade-libabw-devel
  • suse-upgrade-libabw-devel-doc
  • suse-upgrade-libbase
  • suse-upgrade-libcdr
  • suse-upgrade-libcdr-0_1-1
  • suse-upgrade-libcdr-devel
  • suse-upgrade-libcdr-devel-doc
  • suse-upgrade-libcmis-0_5-5
  • suse-upgrade-libcmis-c-0_5-5
  • suse-upgrade-libcmis-c-devel
  • suse-upgrade-libcmis-devel
  • suse-upgrade-libe-book
  • suse-upgrade-libe-book-0_1-1
  • suse-upgrade-libe-book-devel
  • suse-upgrade-libe-book-devel-doc
  • suse-upgrade-libetonyek
  • suse-upgrade-libetonyek-0_1-1
  • suse-upgrade-libetonyek-devel
  • suse-upgrade-libetonyek-devel-doc
  • suse-upgrade-libfonts
  • suse-upgrade-libformula
  • suse-upgrade-libfreehand
  • suse-upgrade-libfreehand-0_1-1
  • suse-upgrade-libfreehand-devel
  • suse-upgrade-libfreehand-devel-doc
  • suse-upgrade-libgltf
  • suse-upgrade-libgltf-0_0-0
  • suse-upgrade-libgraphite2-3
  • suse-upgrade-libgraphite2-3-32bit
  • suse-upgrade-libhyphen0
  • suse-upgrade-libixion
  • suse-upgrade-libixion-0_10-0
  • suse-upgrade-libixion-devel
  • suse-upgrade-liblangtag
  • suse-upgrade-liblangtag-devel
  • suse-upgrade-liblangtag1
  • suse-upgrade-liblayout
  • suse-upgrade-libloader
  • suse-upgrade-libmspub
  • suse-upgrade-libmspub-0_1-1
  • suse-upgrade-libmspub-devel
  • suse-upgrade-libmspub-devel-doc
  • suse-upgrade-libmwaw
  • suse-upgrade-libmwaw-0_3-3
  • suse-upgrade-libmwaw-devel
  • suse-upgrade-libmwaw-devel-doc
  • suse-upgrade-libodfgen
  • suse-upgrade-libodfgen-0_1-1
  • suse-upgrade-libodfgen-devel
  • suse-upgrade-libodfgen-devel-doc
  • suse-upgrade-liborcus
  • suse-upgrade-liborcus-0_8-0
  • suse-upgrade-liborcus-devel
  • suse-upgrade-libpagemaker
  • suse-upgrade-libpagemaker-0_0-0
  • suse-upgrade-libreoffice
  • suse-upgrade-libreoffice-base
  • suse-upgrade-libreoffice-base-drivers-mysql
  • suse-upgrade-libreoffice-base-drivers-postgresql
  • suse-upgrade-libreoffice-calc
  • suse-upgrade-libreoffice-calc-extensions
  • suse-upgrade-libreoffice-draw
  • suse-upgrade-libreoffice-filters-optional
  • suse-upgrade-libreoffice-gnome
  • suse-upgrade-libreoffice-icon-theme-tango
  • suse-upgrade-libreoffice-impress
  • suse-upgrade-libreoffice-l10n-af
  • suse-upgrade-libreoffice-l10n-ar
  • suse-upgrade-libreoffice-l10n-ca
  • suse-upgrade-libreoffice-l10n-cs
  • suse-upgrade-libreoffice-l10n-da
  • suse-upgrade-libreoffice-l10n-de
  • suse-upgrade-libreoffice-l10n-en
  • suse-upgrade-libreoffice-l10n-es
  • suse-upgrade-libreoffice-l10n-fi
  • suse-upgrade-libreoffice-l10n-fr
  • suse-upgrade-libreoffice-l10n-gu
  • suse-upgrade-libreoffice-l10n-hi
  • suse-upgrade-libreoffice-l10n-hu
  • suse-upgrade-libreoffice-l10n-it
  • suse-upgrade-libreoffice-l10n-ja
  • suse-upgrade-libreoffice-l10n-ko
  • suse-upgrade-libreoffice-l10n-nb
  • suse-upgrade-libreoffice-l10n-nl
  • suse-upgrade-libreoffice-l10n-nn
  • suse-upgrade-libreoffice-l10n-pl
  • suse-upgrade-libreoffice-l10n-pt-br
  • suse-upgrade-libreoffice-l10n-pt-pt
  • suse-upgrade-libreoffice-l10n-ru
  • suse-upgrade-libreoffice-l10n-sk
  • suse-upgrade-libreoffice-l10n-sv
  • suse-upgrade-libreoffice-l10n-xh
  • suse-upgrade-libreoffice-l10n-zh-hans
  • suse-upgrade-libreoffice-l10n-zh-hant
  • suse-upgrade-libreoffice-l10n-zu
  • suse-upgrade-libreoffice-mailmerge
  • suse-upgrade-libreoffice-math
  • suse-upgrade-libreoffice-officebean
  • suse-upgrade-libreoffice-pyuno
  • suse-upgrade-libreoffice-share-linker
  • suse-upgrade-libreoffice-voikko
  • suse-upgrade-libreoffice-writer
  • suse-upgrade-libreoffice-writer-extensions
  • suse-upgrade-librepository
  • suse-upgrade-librevenge
  • suse-upgrade-librevenge-0_0-0
  • suse-upgrade-librevenge-devel
  • suse-upgrade-librevenge-generators-0_0-0
  • suse-upgrade-librevenge-stream-0_0-0
  • suse-upgrade-libserializer
  • suse-upgrade-libvisio
  • suse-upgrade-libvisio-0_1-1
  • suse-upgrade-libvisio-devel
  • suse-upgrade-libvisio-devel-doc
  • suse-upgrade-libvoikko
  • suse-upgrade-libvoikko-devel
  • suse-upgrade-libvoikko1
  • suse-upgrade-libwps
  • suse-upgrade-libwps-0_4-4
  • suse-upgrade-libwps-devel
  • suse-upgrade-malaga-suomi
  • suse-upgrade-myspell-af_za
  • suse-upgrade-myspell-ar
  • suse-upgrade-myspell-be_by
  • suse-upgrade-myspell-bg_bg
  • suse-upgrade-myspell-bn_bd
  • suse-upgrade-myspell-bs_ba
  • suse-upgrade-myspell-ca
  • suse-upgrade-myspell-cs_cz
  • suse-upgrade-myspell-da_dk
  • suse-upgrade-myspell-de
  • suse-upgrade-myspell-dictionaries
  • suse-upgrade-myspell-el_gr
  • suse-upgrade-myspell-en
  • suse-upgrade-myspell-es
  • suse-upgrade-myspell-et_ee
  • suse-upgrade-myspell-fr_fr
  • suse-upgrade-myspell-gu_in
  • suse-upgrade-myspell-he_il
  • suse-upgrade-myspell-hi_in
  • suse-upgrade-myspell-hr_hr
  • suse-upgrade-myspell-hu_hu
  • suse-upgrade-myspell-it_it
  • suse-upgrade-myspell-lo_la
  • suse-upgrade-myspell-lt_lt
  • suse-upgrade-myspell-lv_lv
  • suse-upgrade-myspell-nl_nl
  • suse-upgrade-myspell-no
  • suse-upgrade-myspell-pl_pl
  • suse-upgrade-myspell-pt_br
  • suse-upgrade-myspell-pt_pt
  • suse-upgrade-myspell-ro
  • suse-upgrade-myspell-ru_ru
  • suse-upgrade-myspell-sk_sk
  • suse-upgrade-myspell-sl_si
  • suse-upgrade-myspell-sr
  • suse-upgrade-myspell-sv_se
  • suse-upgrade-myspell-te_in
  • suse-upgrade-myspell-th_th
  • suse-upgrade-myspell-vi
  • suse-upgrade-myspell-zu_za
  • suse-upgrade-pentaho-libxml
  • suse-upgrade-pentaho-reporting-flow-engine
  • suse-upgrade-sac

References

  • suse-upgrade-apache-commons-logging
  • suse-upgrade-cmis-client
  • suse-upgrade-flute
  • suse-upgrade-graphite2
  • suse-upgrade-graphite2-devel
  • suse-upgrade-hyphen
  • suse-upgrade-hyphen-devel
  • suse-upgrade-libabw
  • suse-upgrade-libabw-0_1-1
  • suse-upgrade-libabw-devel
  • suse-upgrade-libabw-devel-doc
  • suse-upgrade-libbase
  • suse-upgrade-libcdr
  • suse-upgrade-libcdr-0_1-1
  • suse-upgrade-libcdr-devel
  • suse-upgrade-libcdr-devel-doc
  • suse-upgrade-libcmis-0_5-5
  • suse-upgrade-libcmis-c-0_5-5
  • suse-upgrade-libcmis-c-devel
  • suse-upgrade-libcmis-devel
  • suse-upgrade-libe-book
  • suse-upgrade-libe-book-0_1-1
  • suse-upgrade-libe-book-devel
  • suse-upgrade-libe-book-devel-doc
  • suse-upgrade-libetonyek
  • suse-upgrade-libetonyek-0_1-1
  • suse-upgrade-libetonyek-devel
  • suse-upgrade-libetonyek-devel-doc
  • suse-upgrade-libfonts
  • suse-upgrade-libformula
  • suse-upgrade-libfreehand
  • suse-upgrade-libfreehand-0_1-1
  • suse-upgrade-libfreehand-devel
  • suse-upgrade-libfreehand-devel-doc
  • suse-upgrade-libgltf
  • suse-upgrade-libgltf-0_0-0
  • suse-upgrade-libgraphite2-3
  • suse-upgrade-libgraphite2-3-32bit
  • suse-upgrade-libhyphen0
  • suse-upgrade-libixion
  • suse-upgrade-libixion-0_10-0
  • suse-upgrade-libixion-devel
  • suse-upgrade-liblangtag
  • suse-upgrade-liblangtag-devel
  • suse-upgrade-liblangtag1
  • suse-upgrade-liblayout
  • suse-upgrade-libloader
  • suse-upgrade-libmspub
  • suse-upgrade-libmspub-0_1-1
  • suse-upgrade-libmspub-devel
  • suse-upgrade-libmspub-devel-doc
  • suse-upgrade-libmwaw
  • suse-upgrade-libmwaw-0_3-3
  • suse-upgrade-libmwaw-devel
  • suse-upgrade-libmwaw-devel-doc
  • suse-upgrade-libodfgen
  • suse-upgrade-libodfgen-0_1-1
  • suse-upgrade-libodfgen-devel
  • suse-upgrade-libodfgen-devel-doc
  • suse-upgrade-liborcus
  • suse-upgrade-liborcus-0_8-0
  • suse-upgrade-liborcus-devel
  • suse-upgrade-libpagemaker
  • suse-upgrade-libpagemaker-0_0-0
  • suse-upgrade-libreoffice
  • suse-upgrade-libreoffice-base
  • suse-upgrade-libreoffice-base-drivers-mysql
  • suse-upgrade-libreoffice-base-drivers-postgresql
  • suse-upgrade-libreoffice-calc
  • suse-upgrade-libreoffice-calc-extensions
  • suse-upgrade-libreoffice-draw
  • suse-upgrade-libreoffice-filters-optional
  • suse-upgrade-libreoffice-gnome
  • suse-upgrade-libreoffice-icon-theme-tango
  • suse-upgrade-libreoffice-impress
  • suse-upgrade-libreoffice-l10n-af
  • suse-upgrade-libreoffice-l10n-ar
  • suse-upgrade-libreoffice-l10n-ca
  • suse-upgrade-libreoffice-l10n-cs
  • suse-upgrade-libreoffice-l10n-da
  • suse-upgrade-libreoffice-l10n-de
  • suse-upgrade-libreoffice-l10n-en
  • suse-upgrade-libreoffice-l10n-es
  • suse-upgrade-libreoffice-l10n-fi
  • suse-upgrade-libreoffice-l10n-fr
  • suse-upgrade-libreoffice-l10n-gu
  • suse-upgrade-libreoffice-l10n-hi
  • suse-upgrade-libreoffice-l10n-hu
  • suse-upgrade-libreoffice-l10n-it
  • suse-upgrade-libreoffice-l10n-ja
  • suse-upgrade-libreoffice-l10n-ko
  • suse-upgrade-libreoffice-l10n-nb
  • suse-upgrade-libreoffice-l10n-nl
  • suse-upgrade-libreoffice-l10n-nn
  • suse-upgrade-libreoffice-l10n-pl
  • suse-upgrade-libreoffice-l10n-pt-br
  • suse-upgrade-libreoffice-l10n-pt-pt
  • suse-upgrade-libreoffice-l10n-ru
  • suse-upgrade-libreoffice-l10n-sk
  • suse-upgrade-libreoffice-l10n-sv
  • suse-upgrade-libreoffice-l10n-xh
  • suse-upgrade-libreoffice-l10n-zh-hans
  • suse-upgrade-libreoffice-l10n-zh-hant
  • suse-upgrade-libreoffice-l10n-zu
  • suse-upgrade-libreoffice-mailmerge
  • suse-upgrade-libreoffice-math
  • suse-upgrade-libreoffice-officebean
  • suse-upgrade-libreoffice-pyuno
  • suse-upgrade-libreoffice-share-linker
  • suse-upgrade-libreoffice-voikko
  • suse-upgrade-libreoffice-writer
  • suse-upgrade-libreoffice-writer-extensions
  • suse-upgrade-librepository
  • suse-upgrade-librevenge
  • suse-upgrade-librevenge-0_0-0
  • suse-upgrade-librevenge-devel
  • suse-upgrade-librevenge-generators-0_0-0
  • suse-upgrade-librevenge-stream-0_0-0
  • suse-upgrade-libserializer
  • suse-upgrade-libvisio
  • suse-upgrade-libvisio-0_1-1
  • suse-upgrade-libvisio-devel
  • suse-upgrade-libvisio-devel-doc
  • suse-upgrade-libvoikko
  • suse-upgrade-libvoikko-devel
  • suse-upgrade-libvoikko1
  • suse-upgrade-libwps
  • suse-upgrade-libwps-0_4-4
  • suse-upgrade-libwps-devel
  • suse-upgrade-malaga-suomi
  • suse-upgrade-myspell-af_za
  • suse-upgrade-myspell-ar
  • suse-upgrade-myspell-be_by
  • suse-upgrade-myspell-bg_bg
  • suse-upgrade-myspell-bn_bd
  • suse-upgrade-myspell-bs_ba
  • suse-upgrade-myspell-ca
  • suse-upgrade-myspell-cs_cz
  • suse-upgrade-myspell-da_dk
  • suse-upgrade-myspell-de
  • suse-upgrade-myspell-dictionaries
  • suse-upgrade-myspell-el_gr
  • suse-upgrade-myspell-en
  • suse-upgrade-myspell-es
  • suse-upgrade-myspell-et_ee
  • suse-upgrade-myspell-fr_fr
  • suse-upgrade-myspell-gu_in
  • suse-upgrade-myspell-he_il
  • suse-upgrade-myspell-hi_in
  • suse-upgrade-myspell-hr_hr
  • suse-upgrade-myspell-hu_hu
  • suse-upgrade-myspell-it_it
  • suse-upgrade-myspell-lo_la
  • suse-upgrade-myspell-lt_lt
  • suse-upgrade-myspell-lv_lv
  • suse-upgrade-myspell-nl_nl
  • suse-upgrade-myspell-no
  • suse-upgrade-myspell-pl_pl
  • suse-upgrade-myspell-pt_br
  • suse-upgrade-myspell-pt_pt
  • suse-upgrade-myspell-ro
  • suse-upgrade-myspell-ru_ru
  • suse-upgrade-myspell-sk_sk
  • suse-upgrade-myspell-sl_si
  • suse-upgrade-myspell-sr
  • suse-upgrade-myspell-sv_se
  • suse-upgrade-myspell-te_in
  • suse-upgrade-myspell-th_th
  • suse-upgrade-myspell-vi
  • suse-upgrade-myspell-zu_za
  • suse-upgrade-pentaho-libxml
  • suse-upgrade-pentaho-reporting-flow-engine
  • suse-upgrade-sac

With Rapid7 live dashboards, I have a clear view of all the assets on my network, which ones can be exploited, and what I need to do in order to reduce the risk in my environment in real-time. No other tool gives us that kind of value and insight.

– Scott Cheney, Manager of Information Security, Sierra View Medical Center

;