Critical severity9.8NVD Advisory· Published Jun 5, 2017· Updated Jun 17, 2026
CVE-2017-9433
CVE-2017-9433
Description
Document Liberation Project libmwaw before 2017-04-08 has an out-of-bounds write caused by a heap-based buffer overflow related to the MsWrd1Parser::readFootnoteCorrespondance function in lib/MsWrd1Parser.cxx.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
54cpe:2.3:a:libmwaw_project:libmwaw:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:libmwaw_project:libmwaw:*:*:*:*:*:*:*:*range: <=0.3.11
- (no CPE)range: <2017-04-08
- osv-coords52 versionspkg:rpm/suse/boost&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP3pkg:rpm/suse/boost&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP3pkg:rpm/suse/boost&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP3pkg:rpm/suse/boost&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP3pkg:rpm/suse/boost&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP3pkg:rpm/suse/gnome-documents&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP3pkg:rpm/suse/gnome-documents&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP3pkg:rpm/suse/libepubgen&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP3pkg:rpm/suse/libepubgen&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP3pkg:rpm/suse/libepubgen&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP3pkg:rpm/suse/libixion&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP2pkg:rpm/suse/libixion&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP3pkg:rpm/suse/libixion&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP2pkg:rpm/suse/libixion&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP3pkg:rpm/suse/libixion&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP2pkg:rpm/suse/libixion&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP3pkg:rpm/suse/libmwaw&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP2pkg:rpm/suse/libmwaw&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP3pkg:rpm/suse/libmwaw&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP2pkg:rpm/suse/libmwaw&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP3pkg:rpm/suse/libmwaw&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP2pkg:rpm/suse/libmwaw&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP3pkg:rpm/suse/liborcus&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP2pkg:rpm/suse/liborcus&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP3pkg:rpm/suse/liborcus&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP2pkg:rpm/suse/liborcus&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP3pkg:rpm/suse/liborcus&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP2pkg:rpm/suse/liborcus&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP3pkg:rpm/suse/libqxp&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP3pkg:rpm/suse/libqxp&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP3pkg:rpm/suse/libqxp&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP3pkg:rpm/suse/libreoffice&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP2pkg:rpm/suse/libreoffice&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP3pkg:rpm/suse/libreoffice&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP2pkg:rpm/suse/libreoffice&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP3pkg:rpm/suse/libreoffice&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP2pkg:rpm/suse/libreoffice&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP3pkg:rpm/suse/libstaroffice&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP2pkg:rpm/suse/libstaroffice&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP3pkg:rpm/suse/libstaroffice&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP2pkg:rpm/suse/libstaroffice&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP3pkg:rpm/suse/libwps&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP3pkg:rpm/suse/libwps&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP3pkg:rpm/suse/libwps&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP3pkg:rpm/suse/libzmf&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP2pkg:rpm/suse/libzmf&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP3pkg:rpm/suse/libzmf&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP2pkg:rpm/suse/libzmf&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP3pkg:rpm/suse/myspell-dictionaries&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP2pkg:rpm/suse/myspell-dictionaries&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP3pkg:rpm/suse/myspell-dictionaries&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP2pkg:rpm/suse/myspell-dictionaries&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP3
< 1.54.0-26.3.1+ 51 more
- (no CPE)range: < 1.54.0-26.3.1
- (no CPE)range: < 1.54.0-26.3.1
- (no CPE)range: < 1.54.0-26.3.1
- (no CPE)range: < 1.54.0-26.3.1
- (no CPE)range: < 1.54.0-26.3.1
- (no CPE)range: < 3.20.1-10.6.3
- (no CPE)range: < 3.20.1-10.6.3
- (no CPE)range: < 0.1.0-6.6.1
- (no CPE)range: < 0.1.0-6.6.1
- (no CPE)range: < 0.1.0-6.6.1
- (no CPE)range: < 0.12.1-12.1
- (no CPE)range: < 0.12.1-13.2.1
- (no CPE)range: < 0.12.1-12.1
- (no CPE)range: < 0.12.1-13.2.1
- (no CPE)range: < 0.12.1-12.1
- (no CPE)range: < 0.12.1-13.2.1
- (no CPE)range: < 0.3.11-9.1
- (no CPE)range: < 0.3.11-7.5.1
- (no CPE)range: < 0.3.11-9.1
- (no CPE)range: < 0.3.11-7.5.1
- (no CPE)range: < 0.3.11-9.1
- (no CPE)range: < 0.3.11-7.5.1
- (no CPE)range: < 0.12.1-12.1
- (no CPE)range: < 0.12.1-10.5.1
- (no CPE)range: < 0.12.1-12.1
- (no CPE)range: < 0.12.1-10.5.1
- (no CPE)range: < 0.12.1-12.1
- (no CPE)range: < 0.12.1-10.5.1
- (no CPE)range: < 0.0.1-1.3.1
- (no CPE)range: < 0.0.1-1.3.1
- (no CPE)range: < 0.0.1-1.3.1
- (no CPE)range: < 5.3.3.2-40.5.9
- (no CPE)range: < 5.3.5.2-43.5.4
- (no CPE)range: < 5.3.3.2-40.5.9
- (no CPE)range: < 5.3.5.2-43.5.4
- (no CPE)range: < 5.3.3.2-40.5.9
- (no CPE)range: < 5.3.5.2-43.5.4
- (no CPE)range: < 0.0.3-2.1
- (no CPE)range: < 0.0.3-4.1
- (no CPE)range: < 0.0.3-2.1
- (no CPE)range: < 0.0.3-4.1
- (no CPE)range: < 0.4.7-10.7.1
- (no CPE)range: < 0.4.7-10.7.1
- (no CPE)range: < 0.4.7-10.7.1
- (no CPE)range: < 0.0.1-2.1
- (no CPE)range: < 0.0.1-4.1
- (no CPE)range: < 0.0.1-2.1
- (no CPE)range: < 0.0.1-4.1
- (no CPE)range: < 20170511-15.1
- (no CPE)range: < 20170511-16.2.1
- (no CPE)range: < 20170511-15.1
- (no CPE)range: < 20170511-16.2.1
Patches
Vulnerability mechanics
References
3- sourceforge.net/p/libmwaw/libmwaw/ci/68b3b74569881248bfb6cbb4266177cc253b292f/nvdPatchThird Party Advisory
- bugs.chromium.org/p/oss-fuzz/issues/detailnvdIssue TrackingThird Party AdvisoryVDB Entry
- www.debian.org/security/2017/dsa-3875nvd
News mentions
0No linked articles in our index yet.