CVE-2006-2199
SUSE-SA-2006-040.txt
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Unspecified vulnerability in Java Applets in OpenOffice.org 1.1.x (aka StarOffice) up to 1.1.5 and 2.0.x before 2.0.3 allows user-assisted attackers to escape the Java sandbox and conduct unauthorized activities via certain applets in OpenOffice documents.
Vulnerabilidad sin especificar en Java Applets en OpenOffice.org v1.1.x (tambien conocido como StarOffice) hasta la v1.1.5 y v2.0.x anteriores a v2.0.3 permite a atacantes asistidos por el usuario escapar el Java sandbox y realizar actividades no autorizadas a través de ciertos applets en documentos OpenOffice.
OpenOffice.org versions 1.1.x up to 1.1.5 and 2.0.x before 2.0.3 allows user-complicit attackers to conduct unauthorized activities via an OpenOffice document with a malicious BASIC macro, which is executed without prompting the user. An unspecified vulnerability in Java Applets in OpenOffice.org versions 1.1.x up to 1.1.5 and 2.0.x before 2.0.3 allows user-complicit attackers to escape the Java sandbox and conduct unauthorized activities via certain applets in OpenOffice documents. Heap-based buffer overflow in OpenOffice.org versions 1.1.x up to 1.1.5 and 2.0.x before 2.0.3 allows user-complicit attackers to execute arbitrary code via a crafted OpenOffice XML document that is not properly handled by (1) Calc, (2) Draw, (3) Impress, (4) Math, or (5) Writer, aka "File Format / Buffer Overflow Vulnerability."
CVSS Scores
SSVC
- Decision:-
Timeline
- 2006-05-04 CVE Reserved
- 2006-06-30 CVE Published
- 2024-08-07 CVE Updated
- 2025-07-24 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (30)
URL | Tag | Source |
---|---|---|
http://securitytracker.com/id?1016414 | Vdb Entry | |
http://www.kb.cert.org/vuls/id/243681 | Third Party Advisory |
|
http://www.openoffice.org/security/CVE-2006-2199.html | X_refsource_confirm | |
http://www.securityfocus.com/archive/1/447035/100/0/threaded | Mailing List | |
http://www.securityfocus.com/bid/18737 | Vdb Entry | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/27569 | Vdb Entry | |
https://issues.rpath.com/browse/RPL-475 | X_refsource_confirm | |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11338 | Signature |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Openoffice Search vendor "Openoffice" | Openoffice Search vendor "Openoffice" for product "Openoffice" | 1.1.0 Search vendor "Openoffice" for product "Openoffice" and version "1.1.0" | - |
Affected
| ||||||
Openoffice Search vendor "Openoffice" | Openoffice Search vendor "Openoffice" for product "Openoffice" | 1.1.1 Search vendor "Openoffice" for product "Openoffice" and version "1.1.1" | - |
Affected
| ||||||
Openoffice Search vendor "Openoffice" | Openoffice Search vendor "Openoffice" for product "Openoffice" | 1.1.2 Search vendor "Openoffice" for product "Openoffice" and version "1.1.2" | - |
Affected
| ||||||
Openoffice Search vendor "Openoffice" | Openoffice Search vendor "Openoffice" for product "Openoffice" | 1.1.3 Search vendor "Openoffice" for product "Openoffice" and version "1.1.3" | - |
Affected
| ||||||
Openoffice Search vendor "Openoffice" | Openoffice Search vendor "Openoffice" for product "Openoffice" | 1.1.4 Search vendor "Openoffice" for product "Openoffice" and version "1.1.4" | - |
Affected
| ||||||
Openoffice Search vendor "Openoffice" | Openoffice Search vendor "Openoffice" for product "Openoffice" | 1.1.5 Search vendor "Openoffice" for product "Openoffice" and version "1.1.5" | - |
Affected
| ||||||
Openoffice Search vendor "Openoffice" | Openoffice Search vendor "Openoffice" for product "Openoffice" | 2.0.0 Search vendor "Openoffice" for product "Openoffice" and version "2.0.0" | - |
Affected
| ||||||
Openoffice Search vendor "Openoffice" | Openoffice Search vendor "Openoffice" for product "Openoffice" | 2.0.1 Search vendor "Openoffice" for product "Openoffice" and version "2.0.1" | - |
Affected
| ||||||
Openoffice Search vendor "Openoffice" | Openoffice Search vendor "Openoffice" for product "Openoffice" | 2.0.2 Search vendor "Openoffice" for product "Openoffice" and version "2.0.2" | - |
Affected
| ||||||
Sun Search vendor "Sun" | Staroffice Search vendor "Sun" for product "Staroffice" | 6.0 Search vendor "Sun" for product "Staroffice" and version "6.0" | - |
Affected
| ||||||
Sun Search vendor "Sun" | Staroffice Search vendor "Sun" for product "Staroffice" | 7.0 Search vendor "Sun" for product "Staroffice" and version "7.0" | - |
Affected
| ||||||
Sun Search vendor "Sun" | Staroffice Search vendor "Sun" for product "Staroffice" | 8.0 Search vendor "Sun" for product "Staroffice" and version "8.0" | - |
Affected
|