LWN.net Logo

openoffice.org: code execution

Package(s):openoffice.org CVE #(s):CVE-2012-2334
Created:June 5, 2012 Updated:June 14, 2012
Description: From the Red Hat advisory:

An integer overflow flaw, leading to a buffer overflow, was found in the way OpenOffice.org processed an invalid Escher graphics records length in Microsoft Office PowerPoint documents. An attacker could provide a specially-crafted Microsoft Office PowerPoint document that, when opened, would cause OpenOffice.org to crash or, potentially, execute arbitrary code with the privileges of the user running OpenOffice.org.

Alerts:
Red Hat RHSA-2012:0705-01 2012-06-05
CentOS CESA-2012:0705 2012-06-05
CentOS CESA-2012:0705 2012-06-05
Scientific Linux SL-open-20120605 2012-06-05
Oracle ELSA-2012-0705 2012-06-05
Debian DSA-2487-1 2012-06-07
Fedora FEDORA-2012-8114 2012-06-13
Mandriva MDVSA-2012:090 2012-06-14
Mandriva MDVSA-2012:091 2012-06-14
Mandriva MDVSA-2012:091 2012-06-15
Ubuntu USN-1495-1 2012-07-02
Ubuntu USN-1496-1 2012-07-02
Mageia MGASA-2012-0253 2012-09-04

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds