DSA-2055-1 openoffice.org -- macro executionID: oval:org.secpod.oval:def:600052 | Date: (C)2011-01-28 (M)2022-10-10 |
Class: PATCH | Family: unix |
It was discovered that OpenOffice.org, a full-featured office productivity suite that provides a near drop-in replacement for Microsoft Office, is not properly handling python macros embedded in an office document. This allows an attacker to perform user-assisted execution of arbitrary code in certain use cases of the python macro viewer component. For the stable distribution , this problem has been fixed in version 1:2.4.1+dfsg-1+lenny7. For the testing distribution , this problem will be fixed soon. For the unstable distribution , this problem has been fixed in version 1:3.2.1-1. We recommend that you upgrade your openoffice.org packages.