Skip to main content

OpenOffice.org Multiple Vulnerabilities

Last Update Date: 1 Feb 2011 Release Date: 28 Jan 2011 6332 Views

RISK: Medium Risk

TYPE: Clients - Productivity Products

TYPE: Productivity Products

Multiple vulnerabilities have been identified in OpenOffice.org, which could be exploited by remote attackers to compromise a vulnerable system.

  1. A buffer overflow error when processing malformed TGA files, which could be exploited by attackers to execute arbitrary code by convincing a user to open a malicious document (e.g. ODF or Office).
  2. A buffer overflow error when processing malformed PNG files, which could be exploited by attackers to execute arbitrary code by convincing a user to open a malicious document (e.g. ODF or Office).
  3. A memory corruption error within the "WW8ListManager::WW8ListManager()" function when processing malformed data, which could be exploited to execute arbitrary code by tricking a user into opening a specially crafted Word document.
  4. A memory corruption error within the "WW8DopTypography::ReadFromMem()" function when processing malformed data, which could be exploited to execute arbitrary code by tricking a user into opening a specially crafted Word document.
  5. A memory corruption error when processing malformed RTF data, which could be exploited by attackers to execute arbitrary code by convincing a user to open a malicious RTF document.
  6. A memory corruption error when processing malformed RTF data, which could be exploited by attackers to execute arbitrary code by convincing a user to open a malicious RTF document.
  7. A directory traversal error related to zip/jar package extraction, which could allow attackers to overwrite arbitrary files.
  8. An error in the start script and other shell scripts when handling "LD_LIBRARY_PATH" while searching for libraries within the current directory, which could lead to code execution.
  9. A buffer overflow error when processing malformed PPT files.
  10. buffer overflow error when processing malformed PPT files.

Other vulnerabilities related to third party libraries Xpdf and Libxml2 have also been reported.