OpenOffice WMF and EMF Handling Heap Overflow Vulnerabilities
RISK: Medium Risk
Multiple vulnerabilities have been identified in OpenOffice, which could be exploited by remote attackers to compromise a vulnerable system.
1. Due to a heap overflow error when processing malformed WMF files, which could be exploited by attackers to execute arbitrary code by tricking a user into opening a malicious document.
2. Due to a heap overflow error when processing malformed EMF files, which could be exploited by attackers to execute arbitrary code by tricking a user into opening a malicious document.
Impact
- Remote Code Execution
System / Technologies affected
- OpenOffice.org versions prior to 2.4.2
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- Upgrade to OpenOffice.org version 2.4.2 :
http://download.openoffice.org/index.html
Vulnerability Identifier
Source
Related Link
Share with