CVE-2025-64406
BaseFortify
Publication date: 2025-11-12
Last updated on: 2025-11-13
Assigner: Apache Software Foundation
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| apache | openoffice | to 4.1.16 (exc) |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-787 | The product writes data past the end, or before the beginning, of the intended buffer. |
Attack-Flow Graph
AI Powered Q&A
How can this vulnerability impact me? :
The vulnerability can impact you by causing Apache OpenOffice to crash or by corrupting memory, which could lead to instability or potential exploitation of the system running the software.
What immediate steps should I take to mitigate this vulnerability?
The immediate step to mitigate this vulnerability is to upgrade Apache OpenOffice to version 4.1.16, which contains the fix for the out-of-bounds write issue.
Can you explain this vulnerability to me?
This vulnerability is an out-of-bounds write in Apache OpenOffice that allows an attacker to create a specially crafted document which can cause the program to crash or corrupt other areas of memory.