Nessus Plugin #18060
Plugin Index
Note: This file has been created from a
downloaded version of the Nessus Plugins
from
http://www.nessus.org/.
Therefore, the information here can be outdated.
[GLSA-200504-13] OpenOffice.Org: DOC document Heap Overflow
- Family:
- Gentoo Local Security Checks
- Category:
- infos
- Copyright:
- (C) 2005 Michel Arboi
- Summary:
- OpenOffice.Org: DOC document Heap Overflow
- Version:
- $Revision: 1.1 $
- Cve_id:
- CAN-2005-0941
- Bugtraq_id:
- -
- Xrefs:
- GLSA:200504-13
- Description:
- The remote host is affected by the vulnerability described in GLSA-200504-13
(OpenOffice.Org: DOC document Heap Overflow)
AD-LAB has discovered a heap overflow in the
"StgCompObjStream::Load()" function when processing DOC documents.
Impact
An attacker could design a malicious DOC document containing a
specially crafted header which, when processed by OpenOffice.Org, would
result in the execution of arbitrary code with the rights of the user
running the application.
Workaround
There is no known workaround at this time.
References:
http://www.openoffice.org/issues/show_bug.cgi?id=46388
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2005-0941
Solution:
All OpenOffice.Org users should upgrade to the latest version:
# emerge --sync
# emerge --ask --oneshot --verbose ">=app-office/openoffice-1.1.4-r1"
All OpenOffice.Org binary users should upgrade to the latest
version:
# emerge --sync
# emerge --ask --oneshot --verbose ">=app-office/openoffice-bin-1.1.4-r1"
All OpenOffice.Org Ximian users should upgrade to the latest
version:
# emerge --sync
# emerge --ask --oneshot --verbose app-office/openoffice-ximian
Note to PPC users: There is no fixed OpenOffice.Org binary
version for the PPC architecture yet. Affected users are encouraged to
switch to the latest OpenOffice.Org source package.
Note to
SPARC users: There is no stable OpenOffice.Org fixed version for the
SPARC architecture. Affected users should switch to the latest
OpenOffice.Org Ximian version.
Risk factor : Medium
Generiert am 27.04.2005 um 18:49:54 Uhr.