← Vulnerability feed

Vulnerability record · CVE-2008-2238 · published 30 October 2008

CVE-2008-2238: Openoffice.org memory buffer overflow vulnerability

Openoffice · Openoffice.Org

Multiple integer overflows in OpenOffice.org (OOo) 2.x before 2.4.2 allow remote attackers to execute arbitrary code via crafted EMR records in an EMF file associated with a StarOffice/StarSuite document, which trigger a heap-based buffer overflow.

9.3 CVSS 2.0 High EPSS 6.7% · top 6.3% CWE-119 · Memory buffer overflow
9.3CVSS 2.0 base score
6.7%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
54References
16 Jun 2026Last modified by NVD

Description

Multiple integer overflows in OpenOffice.org (OOo) 2.x before 2.4.2 allow remote attackers to execute arbitrary code via crafted EMR records in an EMF file associated with a StarOffice/StarSuite document, which trigger a heap-based buffer overflow.

AV:N/AC:M/Au:N/C:C/I:C/A:C

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

LinkTags
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=750
http://lists.opensuse.org/opensuse-security-announce/2008-11/msg00002.html
http://neowiki.neooffice.org/index.php/NeoOffice_2.2.5_Patch_3_New_Features#Security_fixes
http://secunia.com/advisories/32419 Vendor Advisory
http://secunia.com/advisories/32461 Vendor Advisory
http://secunia.com/advisories/32463
http://secunia.com/advisories/32489 Vendor Advisory
http://secunia.com/advisories/32676
http://secunia.com/advisories/32856
http://secunia.com/advisories/32872
http://secunia.com/advisories/33140
http://security.gentoo.org/glsa/glsa-200812-13.xml
http://sunsolve.sun.com/search/document.do?assetkey=1-26-243226-1
http://www.debian.org/security/2008/dsa-1661 Patch
http://www.openoffice.org/security/cves/CVE-2008-2238.html Patch
http://www.redhat.com/support/errata/RHSA-2008-0939.html
http://www.securityfocus.com/bid/31962 Patch
http://www.securitytracker.com/id?1021121
http://www.ubuntu.com/usn/usn-677-1
http://www.ubuntu.com/usn/usn-677-2
http://www.vupen.com/english/advisories/2008/2947
http://www.vupen.com/english/advisories/2008/3103
http://www.vupen.com/english/advisories/2008/3153
https://exchange.xforce.ibmcloud.com/vulnerabilities/46166
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10849
https://www.redhat.com/archives/fedora-package-announce/2008-October/msg00905.html
https://www.redhat.com/archives/fedora-package-announce/2008-October/msg00923.html
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=750
http://lists.opensuse.org/opensuse-security-announce/2008-11/msg00002.html
http://neowiki.neooffice.org/index.php/NeoOffice_2.2.5_Patch_3_New_Features#Security_fixes
http://secunia.com/advisories/32419 Vendor Advisory
http://secunia.com/advisories/32461 Vendor Advisory
http://secunia.com/advisories/32463
http://secunia.com/advisories/32489 Vendor Advisory
http://secunia.com/advisories/32676
http://secunia.com/advisories/32856
http://secunia.com/advisories/32872
http://secunia.com/advisories/33140
http://security.gentoo.org/glsa/glsa-200812-13.xml
http://sunsolve.sun.com/search/document.do?assetkey=1-26-243226-1

Track CVE-2008-2238 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2009-3570Openoffice.org vulnerabilityUnspecified vulnerability in OpenOffice.org (OOo) has unspecified impact and remote attack vectors, as demonstrated by a certain module in VulnDisco …EPSS 1.5%9.3CVE-2010-2935Openoffice.org vulnerabilitysimpress.bin in the Impress module in OpenOffice.org (OOo) 2.x and 3.x before 3.3 does not properly handle integer values associated with dictionary …EPSS 7.1%9.3CVE-2010-2936Openoffice.org vulnerabilityInteger overflow in simpress.bin in the Impress module in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allows remote attackers to cause a denial of se…EPSS 7.1%9.3CVE-2009-3571Openoffice.org memory buffer overflow vulnerabilityUnspecified vulnerability in OpenOffice.org (OOo) has unknown impact and client-side attack vector, as demonstrated by a certain module in VulnDisco …EPSS 1.3%9.3CVE-2009-0200Openoffice.org vulnerabilityInteger underflow in OpenOffice.org (OOo) before 3.1.1 and StarOffice/StarSuite 7, 8, and 9 might allow remote attackers to execute arbitrary code vi…EPSS 6.7%9.3CVE-2009-0201Openoffice.org memory buffer overflow vulnerabilityHeap-based buffer overflow in OpenOffice.org (OOo) before 3.1.1 and StarOffice/StarSuite 7, 8, and 9 might allow remote attackers to execute arbitrar…EPSS 6.7%9.3CVE-2009-0259Openoffice.org vulnerabilityThe Word processor in OpenOffice.org 1.1.2 through 1.1.5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary …EPSS 7.5%9.3CVE-2008-2237Openoffice.org memory buffer overflow vulnerabilityHeap-based buffer overflow in OpenOffice.org (OOo) 2.x before 2.4.2 allows remote attackers to execute arbitrary code via a crafted WMF file associat…EPSS 6.1%

Source: NIST National Vulnerability Database (record CVE-2008-2238), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.