CVE-2022-38745
Apache OpenOffice: Empty entry in Java class path
Severity Score
7.8
*CVSS v3.1
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
Apache OpenOffice versions before 4.1.14 may be configured to add an empty entry to the Java class path. This may lead to run arbitrary Java code from the current directory.
A flaw was found in LibreOffice. When an empty Java class path entry is configured, LibreOffice will search for Java classes in the current working directory, allowing malicious Java classes to load when opening a document using the file manager, resulting in arbitrary code execution.
*Credits:
European Commission's Open Source Programme Office
CVSS Scores
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2022-08-25 CVE Reserved
- 2023-03-24 CVE Published
- 2024-08-03 CVE Updated
- 2024-09-03 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-94: Improper Control of Generation of Code ('Code Injection')
- CWE-427: Uncontrolled Search Path Element
- CWE-1188: Initialization of a Resource with an Insecure Default
CAPEC
References (4)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://lists.apache.org/thread/q3noq7m681kvtb29m28x74q8cnwnzzo0 | 2023-11-07 | |
https://www.openoffice.org/security/cves/CVE-2022-38745.html | 2023-11-07 | |
https://access.redhat.com/security/cve/CVE-2022-38745 | 2023-11-14 | |
https://bugzilla.redhat.com/show_bug.cgi?id=2182044 | 2023-11-14 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Apache Search vendor "Apache" | Openoffice Search vendor "Apache" for product "Openoffice" | < 4.1.14 Search vendor "Apache" for product "Openoffice" and version " < 4.1.14" | - |
Affected
|