LWN.net Logo

openoffice.org: multiple vulnerabilities

Package(s):openoffice.org CVE #(s):CVE-2007-5745 CVE-2007-5746 CVE-2007-5747 CVE-2008-0320
Created:April 17, 2008 Updated:June 12, 2008
Description: From the Debian alert:

CVE-2007-5745, CVE-2007-5747: Several bugs have been discovered in the way OpenOffice.org parses Quattro Pro files that may lead to a overflow in the heap potentially leading to the execution of arbitrary code.

CVE-2007-5746: Specially crafted EMF files can trigger a buffer overflow in the heap that may lead to the execution of arbitrary code.

CVE-2008-0320: A bug has been discovered in the processing of OLE files that can cause a buffer overflow in the heap potentially leading to the execution of arbitrary code.

Alerts:
Debian DSA-1547-1 2008-04-17
Red Hat RHSA-2008:0175-01 2008-04-17
SuSE SUSE-SA:2008:023 2008-04-18
Mandriva MDVSA-2008:090 2008-04-20
Fedora FEDORA-2008-3251 2008-04-22
Mandriva MDVSA-2008:095 2008-05-02
Ubuntu USN-609-1 2008-05-06
Gentoo 200805-16 2008-05-14
Fedora FEDORA-2008-4104 2008-05-17
Fedora FEDORA-2008-5239 2008-06-11
Fedora FEDORA-2008-5247 2008-06-11

(Log in to post comments)

Copyright © 2008, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds
Powered by Rackspace Managed Hosting.