Unrated severityNVD Advisory· Published Jan 28, 2011· Updated Apr 29, 2026
CVE-2010-3450
CVE-2010-3450
Description
Multiple directory traversal vulnerabilities in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allow remote attackers to overwrite arbitrary files via a .. (dot dot) in an entry in (1) an XSLT JAR filter description file, (2) an Extension (aka OXT) file, or unspecified other (3) JAR or (4) ZIP files.
Affected products
7cpe:2.3:o:canonical:ubuntu_linux:8.04:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:o:canonical:ubuntu_linux:8.04:*:*:*:*:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:9.10:*:*:*:*:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:10.04:*:*:*:*:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:10.10:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:5.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:debian:debian_linux:5.0:*:*:*:*:*:*:*
- cpe:2.3:o:debian:debian_linux:6.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
21- bugzilla.redhat.com/show_bug.cginvdIssue TrackingPatchThird Party Advisory
- ubuntu.com/usn/usn-1056-1nvdThird Party Advisory
- www.debian.org/security/2011/dsa-2151nvdThird Party Advisory
- www.gentoo.org/security/en/glsa/glsa-201408-19.xmlnvdThird Party Advisory
- www.openoffice.org/security/cves/CVE-2010-3450.htmlnvdVendor Advisory
- www.oracle.com/technetwork/topics/security/cpuapr2011-301950.htmlnvdThird Party Advisory
- www.securityfocus.com/bid/46031nvdBroken LinkThird Party AdvisoryVDB Entry
- www.securitytracker.com/idnvdBroken LinkThird Party AdvisoryVDB Entry
- osvdb.org/70711nvdBroken Link
- secunia.com/advisories/40775nvdBroken Link
- secunia.com/advisories/42999nvdBroken Link
- secunia.com/advisories/43065nvdBroken Link
- secunia.com/advisories/43105nvdBroken Link
- secunia.com/advisories/43118nvdBroken Link
- secunia.com/advisories/60799nvdBroken Link
- www.mandriva.com/security/advisoriesnvdBroken Link
- www.redhat.com/support/errata/RHSA-2011-0181.htmlnvdBroken Link
- www.redhat.com/support/errata/RHSA-2011-0182.htmlnvdBroken Link
- www.vupen.com/english/advisories/2011/0230nvdBroken Link
- www.vupen.com/english/advisories/2011/0232nvdBroken Link
- www.vupen.com/english/advisories/2011/0279nvdBroken Link
News mentions
0No linked articles in our index yet.