LWN.net Logo

openoffice.org: code execution

Package(s):openoffice.org CVE #(s):CVE-2012-4233
Created:November 1, 2012 Updated:February 10, 2013
Description:

From the Debian advisory:

High-Tech Bridge SA Security Research Lab discovered multiple null-pointer dereferences based vulnerabilities in OpenOffice which could cause application crash or even arbitrary code execution using specially crafted files. Affected file types are LWP (Lotus Word Pro), ODG, PPT (MS Powerpoint 2003) and XLS (MS Excel 2003).

Alerts:
Debian DSA-2570-1 2012-10-31
openSUSE openSUSE-SU-2012:1523-1 2012-11-22
openSUSE openSUSE-SU-2012:1686-1 2012-12-23
openSUSE openSUSE-SU-2013:0173-1 2013-01-23
Mageia MGASA-2013-0045 2013-02-09

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds