Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2017-12607

26
FAUCET Score

CVE-2017-12607 is a high-severity vulnerability affecting Apache OpenOffice versions prior to 4.1.4, specifically within its PPT file parser. An attacker can exploit this by crafting a malicious document, leading to memory corruption, application crashes (denial of service), and potentially arbitrary code execution. The attack requires user interaction (opening the malicious file) but has a high impact on confidentiality, integrity, and availability. While no public exploit code or active exploitation has been observed, the vulnerability has garnered some community discussion and media coverage.

Impacted Technologies

VendorProductVersion(s)CPE
< 4.1.4CPE matchmatch criteria
cpe:2.3:a:apache:openoffice:*:*:*:*:*:*:*:*
7.0CPE matchmatch criteria
cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*
8.0CPE matchmatch criteria
cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

7.8HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
5.9
CvssVersion
3.1

Exploit Intelligence

EPSS Score
2.59%
Probability of exploitation in next 30 days
EPSS Percentile
83.7%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0259 is in the 84th percentile among its peer group of 11,621 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.

Media Mentions

The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (9)

asteriskpatch availablevia llm_extracted
Fixed in: 5.0.5/5.1.0
View patch
asteriskpatch availablevia llm_extracted
Fixed in: 5.0.2/5.1.0
View patch
check_pointpatch availablevia llm_extracted
Fixed in: 5.0.5/5.1.0
View patch
check_pointpatch availablevia llm_extracted
Fixed in: 5.0.2/5.1.0
View patch
denopatch availablevia llm_extracted
Fixed in: 4.1.4
View patch
libreofficepatch availablevia llm_extracted
Fixed in: 4.1.4
View patch
nessuspatch availablevia llm_extracted
Fixed in: 4.1.4
postgresqlpatch availablevia llm_extracted
Fixed in: 4.1.4
View patch
redhatend of lifevia redhat_api
Product: Red Hat Enterprise Linux 6Fixed in: libreoffice

Vendor Advisories (9)

redhatCVE-2017-12607Moderate

libreoffice: Out-of-bounds write in the PPTStyleSheet::PPTStyleSheet functionality

Oct 26, 2017
asteriskllm-asterisk-0038e4091c5e83d9

LotusWordPro Bounds overflows in LwpTocSuperLayout processing

asteriskllm-asterisk-d24c72bcfdca1d95

Out-of-Bounds Write in Impress' PPT Filter

check_pointllm-check_point-25460fa02127ae53

LotusWordPro Bounds overflows in LwpTocSuperLayout processing

check_pointllm-check_point-47cd6662d478c0d1

Out-of-Bounds Write in Impress' PPT Filter

denollm-deno-8809b9f1cf08c51d

Out-of-Bounds Write in Impress' PPT Filter

postgresqlllm-postgresql-ea08bc18b5d51565

Out-of-Bounds Write in Impress' PPT Filter

libreofficellm-libreoffice-e480f11d28a20b02

Out-of-Bounds Write in Impress' PPT Filter

nessusllm-nessus-b6edae2efbc74748

Out-of-Bounds Write in Impress' PPT Filter

References

lists.debian.org / debian-lts-announce/2017/12/msg00017.html
Mailing ListThird Party Advisory
debian.org / security/2017/dsa-4022
Third Party Advisory
openoffice.org / security/cves/CVE-2017-12607.html
Vendor Advisory
securityfocus.com / bid/101585
Third Party AdvisoryVDB Entry
securitytracker.com / id/1039732
Third Party AdvisoryVDB Entry
securitytracker.com / id/1039734
Third Party AdvisoryVDB Entry