Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2012-1149

31
FAUCET Score

CVE-2012-1149 describes an integer overflow vulnerability in the vclmi.dll module of OpenOffice.org and LibreOffice, affecting versions 3.3, 3.4 Beta, and earlier, and LibreOffice before 3.5.3. This flaw allows remote attackers to trigger a denial of service and potentially execute arbitrary code through a specially crafted embedded image, such as a JPEG in a .DOC file, leading to a heap-based buffer overflow. With a CVSS score of 7.5, this vulnerability is considered high severity due to its network-based attack vector, low access complexity, and potential for partial confidentiality, integrity, and availability impacts. There is no evidence of active exploitation, publicly available exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this CVE.

Impacted Technologies

VendorProductVersion(s)CPE
<= 3.5.2CPE matchmatch criteria
cpe:2.3:a:libreoffice:libreoffice:*:*:*:*:*:*:*:*
6.0CPE matchmatch criteria
cpe:2.3:o:debian:debian_linux:6.0:*:*:*:*:*:*:*
7.0CPE matchmatch criteria
cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*
5.0CPE matchmatch criteria
cpe:2.3:o:redhat:enterprise_linux:5.0:*:*:*:*:*:*:*
5.0CPE matchmatch criteria
cpe:2.3:o:redhat:enterprise_linux_desktop:5.0:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 2.0

7.5HIGH

AV:N/AC:L/Au:N/C:P/I:P/A:P

Confidentiality Impact
PARTIAL
Integrity Impact
PARTIAL
Availability Impact
PARTIAL
Access Vector
NETWORK
Access Complexity
LOW
Authentication
NONE
Exploitability Score
10.0
Impact Score
6.4
CvssVersion
2.0

Exploit Intelligence

EPSS Score
13.73%
Probability of exploitation in next 30 days
EPSS Percentile
96.1%
Percentile rank of EPSS score among Peer Group
As of 2026-07-24
Model: v2026.06.15
This CVE's current EPSS score of 0.1373 is in the 94th percentile among its peer group of 51,466 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (8)

asteriskpatch availablevia llm_extracted
Fixed in: 3.5.3
View patch
check_pointpatch availablevia llm_extracted
Fixed in: 3.5.3
View patch
denopatch availablevia llm_extracted
Fixed in: 3.4.0
View patch
libreofficepatch availablevia llm_extracted
Fixed in: 3.4.0
View patch
nessuspatch availablevia llm_extracted
Fixed in: 3.4.0
postgresqlpatch availablevia llm_extracted
Fixed in: 3.4.0
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 6Fixed in: openoffice.org-1:3.2.1-19.6.el6_2.7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 5Fixed in: openoffice.org-1:3.1.1-19.10.el5_8.3
View patch

Vendor Advisories (7)

redhatCVE-2012-1149Important

libreoffice: Integer overflows, leading to heap-buffer overflows in JPEG, PNG and BMP reader implementations

May 16, 2012
asteriskllm-asterisk-8ec9fd0d7998e079

Integer overflows in graphic object loading

check_pointllm-check_point-cebdb3815986fd88

Integer overflows in graphic object loading

denollm-deno-816614aff5238547

OpenOffice.org integer overflow error in vclmi.dll module when allocating memory for an embedded image object

postgresqlllm-postgresql-a04be6c1c35195af

OpenOffice.org integer overflow error in vclmi.dll module when allocating memory for an embedded image object

libreofficellm-libreoffice-9a38bf7cfe03773c

OpenOffice.org integer overflow error in vclmi.dll module when allocating memory for an embedded image object

nessusllm-nessus-c4554c6d51698f26

OpenOffice.org integer overflow error in vclmi.dll module when allocating memory for an embedded image object

References

archives.neohapsis.com / archives/bugtraq/2012-05/0089.html
Broken Link
lists.fedoraproject.org / pipermail/package-announce/2012-June/082168.html
Third Party Advisory
lists.fedoraproject.org / pipermail/package-announce/2012-May/081319.html
Third Party Advisory
rhn.redhat.com / errata/RHSA-2012-0705.html
Third Party Advisory
secunia.com / advisories/46992
secunia.com / advisories/47244
secunia.com / advisories/49140
secunia.com / advisories/49373
secunia.com / advisories/49392
Vendor Advisory
secunia.com / advisories/50692
secunia.com / advisories/60799
security.gentoo.org / glsa/glsa-201209-05.xml
Third Party Advisory
securitytracker.com / id
PatchThird Party AdvisoryVDB Entry
exchange.xforce.ibmcloud.com / vulnerabilities/75692
debian.org / security/2012/dsa-2473
Third Party Advisory
debian.org / security/2012/dsa-2487
Third Party Advisory
gentoo.org / security/en/glsa/glsa-201408-19.xml
Third Party Advisory
libreoffice.org / advisories/cve-2012-1149
Vendor Advisory
mandriva.com / security/advisories
Broken Link
mandriva.com / security/advisories
Broken Link
openoffice.org / security/cves/CVE-2012-1149.html
Third Party Advisory
osvdb.org / 81988
Broken Link
securityfocus.com / bid/53570
Third Party AdvisoryVDB Entry