[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249622

 
 

909

 
 

195521

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-2275-1 openoffice.org -- stack-based buffer overflow

ID: oval:org.secpod.oval:def:600585Date: (C)2011-07-08   (M)2022-10-10
Class: PATCHFamily: unix




Will Dormann and Jared Allar discovered that the Lotus Word Pro import filter of OpenOffice.org, a full-featured office productivity suite that provides a near drop-in replacement for Microsoft Office, is not properly handling object ids in the ".lwp" file format. An attacker can exploit this with a specially crafted file and execute arbitrary code with the rights of the victim importing the file. The oldstable distribution is not affected by this problem.

Platform:
Debian 6.0
Product:
openoffice.org
Reference:
DSA-2275-1
CVE-2011-2685
CVE    1
CVE-2011-2685
CPE    2
cpe:/o:debian:debian_linux:6.x
cpe:/a:apache:openoffice.org

© SecPod Technologies