Jump to content

Advisories MDKSA-2007:064: Updated openoffice.org packages to address libwpd heap overflow vulnerabilities


paul
 Share

Recommended Posts

iDefense reported several overflow bugs in libwpd. An attacker

could create a carefully crafted Word Perfect file that could cause

an application linked with libwpd, such as OpenOffice, to crash or

possibly execute arbitrary code if the file was opened by a victim.

 

OpenOffice.org-2.X contains an embedded copy of libpwd, and as such

is susceptible to the same issues.

 

Updated packages have been rebuilt using the system libwpd to address

this issue.

Link to comment
Share on other sites

Guest
This topic is now closed to further replies.
 Share

×
×
  • Create New...