OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
[Full-disclosure] OpenOffice.org issued a WMF code execution fix

From: Juha-Matti Laurio (juha-matti.laurionetti.fi)
Date: Wed Jan 03 2007 - 21:41:27 CST


It appears that OpenOffice.org has issued a patch for WMF/EMF heap overflow vulnerability.

Both versions 1.1.x and 2.x are affected to this issue.
According to Bugzilla entry code execution is possible.

More details via
https://rhn.redhat.com/errata/RHSA-2007-0001.html

and
http://blogs.securiteam.com/?p=785
(including more references)

- Juha-Matti

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/