Critical severity9.8NVD Advisory· Published Apr 15, 2017· Updated Jun 17, 2026
CVE-2017-7882
CVE-2017-7882
Description
LibreOffice before 2017-03-14 has an out-of-bounds write related to the HWPFile::TagsRead function in hwpfilter/source/hwpfile.cxx.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
38- osv-coords37 versionspkg:rpm/opensuse/libreoffice&distro=openSUSE%20Tumbleweedpkg:rpm/suse/libixion&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP2pkg:rpm/suse/libixion&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP3pkg:rpm/suse/libixion&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP2pkg:rpm/suse/libixion&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP3pkg:rpm/suse/libixion&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP2pkg:rpm/suse/libixion&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP3pkg:rpm/suse/libmwaw&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP2pkg:rpm/suse/libmwaw&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP3pkg:rpm/suse/libmwaw&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP2pkg:rpm/suse/libmwaw&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP3pkg:rpm/suse/libmwaw&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP2pkg:rpm/suse/libmwaw&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP3pkg:rpm/suse/liborcus&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP2pkg:rpm/suse/liborcus&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP3pkg:rpm/suse/liborcus&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP2pkg:rpm/suse/liborcus&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP3pkg:rpm/suse/liborcus&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP2pkg:rpm/suse/liborcus&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP3pkg:rpm/suse/libreoffice&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP2pkg:rpm/suse/libreoffice&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP3pkg:rpm/suse/libreoffice&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP2pkg:rpm/suse/libreoffice&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP3pkg:rpm/suse/libreoffice&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP2pkg:rpm/suse/libreoffice&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP3pkg:rpm/suse/libstaroffice&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP2pkg:rpm/suse/libstaroffice&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP3pkg:rpm/suse/libstaroffice&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP2pkg:rpm/suse/libstaroffice&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP3pkg:rpm/suse/libzmf&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP2pkg:rpm/suse/libzmf&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP3pkg:rpm/suse/libzmf&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP2pkg:rpm/suse/libzmf&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP3pkg:rpm/suse/myspell-dictionaries&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP2pkg:rpm/suse/myspell-dictionaries&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP3pkg:rpm/suse/myspell-dictionaries&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP2pkg:rpm/suse/myspell-dictionaries&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP3
< 7.1.5.2-3.13+ 36 more
- (no CPE)range: < 7.1.5.2-3.13
- (no CPE)range: < 0.12.1-12.1
- (no CPE)range: < 0.12.1-13.2.1
- (no CPE)range: < 0.12.1-12.1
- (no CPE)range: < 0.12.1-13.2.1
- (no CPE)range: < 0.12.1-12.1
- (no CPE)range: < 0.12.1-13.2.1
- (no CPE)range: < 0.3.11-9.1
- (no CPE)range: < 0.3.11-7.5.1
- (no CPE)range: < 0.3.11-9.1
- (no CPE)range: < 0.3.11-7.5.1
- (no CPE)range: < 0.3.11-9.1
- (no CPE)range: < 0.3.11-7.5.1
- (no CPE)range: < 0.12.1-12.1
- (no CPE)range: < 0.12.1-10.5.1
- (no CPE)range: < 0.12.1-12.1
- (no CPE)range: < 0.12.1-10.5.1
- (no CPE)range: < 0.12.1-12.1
- (no CPE)range: < 0.12.1-10.5.1
- (no CPE)range: < 5.3.3.2-40.5.9
- (no CPE)range: < 5.3.5.2-43.5.4
- (no CPE)range: < 5.3.3.2-40.5.9
- (no CPE)range: < 5.3.5.2-43.5.4
- (no CPE)range: < 5.3.3.2-40.5.9
- (no CPE)range: < 5.3.5.2-43.5.4
- (no CPE)range: < 0.0.3-2.1
- (no CPE)range: < 0.0.3-4.1
- (no CPE)range: < 0.0.3-2.1
- (no CPE)range: < 0.0.3-4.1
- (no CPE)range: < 0.0.1-2.1
- (no CPE)range: < 0.0.1-4.1
- (no CPE)range: < 0.0.1-2.1
- (no CPE)range: < 0.0.1-4.1
- (no CPE)range: < 20170511-15.1
- (no CPE)range: < 20170511-16.2.1
- (no CPE)range: < 20170511-15.1
- (no CPE)range: < 20170511-16.2.1
Patches
Vulnerability mechanics
References
4- bugs.chromium.org/p/oss-fuzz/issues/detailnvdIssue TrackingPatch
- github.com/LibreOffice/core/commit/65dcd1d8195069c8c8acb3a188b8e5616c51029cnvdIssue TrackingPatchThird Party Advisory
- www.securityfocus.com/bid/97684nvdThird Party AdvisoryVDB Entry
- www.libreoffice.org/about-us/security/advisories/cve-2017-7882/nvd
News mentions
0No linked articles in our index yet.