LWN.net Logo

openoffice.org: Python macro security bypass

Package(s):OpenOffice CVE #(s):CVE-2010-0395
Created:July 16, 2010 Updated:November 8, 2010
Description:

From the CVE entry:

OpenOffice.org 2.x and 3.0 before 3.2.1 allows user-assisted remote attackers to bypass Python macro security restrictions and execute arbitrary Python code via a crafted OpenDocument Text (ODT) file that triggers code execution when the macro directory structure is previewed.

Alerts:
Mandriva MDVSA-2010:221 2010-11-05
SUSE SUSE-SR:2010:014 2010-08-02
openSUSE openSUSE-SU-2010:0386-1 2010-07-16

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds