
Cloud Vulnerability DB
A community-led vulnerabilities database
CVE-2025-64406 is an out-of-bounds write vulnerability in Apache OpenOffice that allows an attacker to craft a malicious document — specifically during CSV import — that can crash the program or corrupt other memory areas. It affects Apache OpenOffice through version 4.1.15, and was disclosed on November 11–12, 2025. The vulnerability was discovered, reported, and fixed by Damjan Jovanovic. It carries a CVSS v3.1 base score of 4.3 (Medium) (OpenOffice Advisory, oss-security).
The root cause is an out-of-bounds write (CWE-787) triggered during the CSV import process in Apache OpenOffice. An attacker can craft a specially formatted CSV document that, when opened by a victim, causes the application to write data outside the bounds of an allocated memory buffer, potentially corrupting adjacent memory regions. Exploitation requires user interaction — the victim must open the malicious document — and no authentication or special privileges are needed on the attacker's side. No public proof-of-concept exploit code has been identified (oss-security, OpenOffice Advisory).
Successful exploitation can cause Apache OpenOffice to crash (denial of service) or corrupt memory in adjacent areas, potentially leading to unexpected application behavior. The primary impact is availability loss (application crash), with limited confidentiality or integrity impact based on the CVSS assessment. In edge cases, memory corruption could theoretically be leveraged for further exploitation, though no such scenario has been demonstrated publicly (OpenOffice Advisory, oss-security).
There is no evidence of public proof-of-concept exploit code or active in-the-wild exploitation as of the time of disclosure. The vulnerability requires user interaction (opening a malicious document), which limits its attack surface. The EPSS score is approximately 0.118%, indicating a low probability of exploitation in the near term. CVE-2025-64406 is not listed in the CISA Known Exploited Vulnerabilities (KEV) catalog (OpenOffice Advisory, Feedly).
soffice, soffice.bin) crashing unexpectedly or generating crash dump files after opening a CSV document.The primary remediation is to upgrade Apache OpenOffice to version 4.1.16, which contains the fix for this vulnerability. Users unable to upgrade immediately should exercise caution when opening CSV files from untrusted or unknown sources, and implement email and file transfer scanning to detect potentially malicious documents. Qualys scanner detection ID 385947 can be used to identify vulnerable installations (OpenOffice Advisory, Apache Mailing List).
The vulnerability was part of a broader set of seven security flaws fixed in Apache OpenOffice 4.1.16, which received coverage from security news outlets including SecurityOnline, CyberPress, and CyberSecurityNews. Community discussion was noted on Bluesky and oss-security mailing lists shortly after disclosure. Coverage generally characterized the update as important for users still relying on Apache OpenOffice, with recommendations to upgrade promptly (SecurityOnline, CyberPress, CyberSecurityNews).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."