Skip to main content

OpenOffice.org PLCF and XML Data Parsing Vulnerabilities

Last Update Date: 1 Aug 2013 Release Date: 29 Jul 2013 3910 Views

RISK: Medium Risk

TYPE: Clients - Productivity Products

TYPE: Productivity Products

Multiple vulnerabilities have been identified in OpenOffice.org, which can be exploited by malicious people to compromise a user's system.

  1. An unspecified error when handling PLCF (Plex of Character Positions in File) data within DOC files can be exploited to cause memory corruption.
  2. An unspecified error when parsing XML elements within OOXML document files (DOCM) can be exploited to cause memory corruption.

Impact

  • Remote Code Execution

System / Technologies affected

  • OpenOffice.org 3.x

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

  • Upgrade to version 4.0

Vulnerability Identifier


Source


Related Link