Medium severity4.3NVD Advisory· Published Nov 12, 2025· Updated Jun 17, 2026
CVE-2025-64406
CVE-2025-64406
Description
An out-of-bounds Write vulnerability in Apache OpenOffice could allow an attacker to craft a document that would crash the program, or otherwise corrupt other memory areas.
This issue affects Apache OpenOffice: through 4.1.15.
Users are recommended to upgrade to version 4.1.16, which fixes the issue.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:apache:openoffice:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:apache:openoffice:*:*:*:*:*:*:*:*range: <4.1.16
- (no CPE)range: <=4.1.15
- (no CPE)range: 0
Patches
Vulnerability mechanics
References
3- www.openwall.com/lists/oss-security/2025/11/11/9nvdMailing ListThird Party Advisory
- lists.apache.org/thread/py89gpogxfb2yo9c5vwv2h9x3m85pfmmnvdIssue TrackingVendor Advisory
- www.openoffice.org/security/cves/CVE-2025-64406.htmlnvdVendor Advisory
News mentions
0No linked articles in our index yet.