Redland Raptor (aka libraptor) before 2.0.7, as used by OpenOffice 3.3 and 3.4 Beta, LibreOffice before 3.4.6 and 3.5.x before 3.5.1, and other products, allows user-assisted remote attackers to read arbitrary files via a crafted XML external entity (XXE) declaration and reference in an RDF document.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
Configuration 5 (hide)
|
Configuration 6 (hide)
|
History
No history.
Information
Published : 2012-06-17 03:41
Updated : 2024-02-15 03:22
NVD link : CVE-2012-0037
Mitre link : CVE-2012-0037
CVE.ORG link : CVE-2012-0037
JSON object : View
Products Affected
redhat
- storage
- storage_for_public_cloud
- enterprise_linux_server
- enterprise_linux_server_aus
- enterprise_linux_desktop
- enterprise_linux_eus
- enterprise_linux_workstation
- gluster_storage_server_for_on-premise
apache
- openoffice
fedoraproject
- fedora
libreoffice
- libreoffice
debian
- debian_linux
librdf
- raptor
CWE
CWE-611
Improper Restriction of XML External Entity Reference