CVE-2014-3524: Apache Openoffice

High severity, CVSS 9.3. EPSS: 14.5% chance of exploitation in the next 30 days.

Apache OpenOffice before 4.1.1 allows remote attackers to execute arbitrary commands and possibly have other unspecified impact via a crafted Calc spreadsheet.

Affected products

  • Apache Openoffice: before 4.1.1 (fixed in 4.1.1)
  • Libreoffice Libreoffice: before 4.2.6 (fixed in 4.2.6); from 4.3.0, before 4.3.1 (fixed in 4.3.1)

Published 2014-08-26. Last modified 2026-06-17.