icu: arbitrary code execution
| Package(s): | icu | CVE #(s): | CVE-2007-4770 CVE-2007-4771 | ||||||||||||||||||||||||||||||||||||||||||||
| Created: | January 25, 2008 | Updated: | May 15, 2008 | ||||||||||||||||||||||||||||||||||||||||||||
| Description: | From the Red Hat advisory: Will Drewry reported multiple flaws in the way libicu processed certain malformed regular expressions. If an application linked against ICU, such as OpenOffice.org, processed a carefully crafted regular expression, it may be possible to execute arbitrary code as the user running the application. | ||||||||||||||||||||||||||||||||||||||||||||||
| Alerts: |
| ||||||||||||||||||||||||||||||||||||||||||||||
