RULE(RULE ID:711136)

Rule General Information
Release Date: 2017-05-10
Rule Name: Multiple Vendor Libwpd Wp3tablesgroup Heap Overflow Vulnerability (CVE-2007-0002)
Severity:
CVE ID:
Rule Protection Details
Description: Multiple heap-based buffer overflows in WordPerfect Document importer/exporter (libwpd) before 0.8.9 allow user-assisted remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted WordPerfect file in which values to loop counters are not properly handled in the (1) WP3TablesGroup::_readContents and (2) WP5DefinitionGroup_DefineTablesSubGroup::WP5DefinitionGroup_DefineTablesSubGroup functions.
Impact: An attacker can execute arbitrary code via a successful exploit in the context of the vulnerable software.
Affected OS: Solaris, Other Unix, FreeBSD, Linux
Reference: SecurityFocusBID:23006
SecurityTrackerID:1017789
Solutions
More advisories have been published on the website, please visit for more suggestions:
http://libwpd.sourceforge.net/download.html