_______________________________________________________________________
Package : openoffice.org
Date : March 10, 2009
Affected: 2008.1
_______________________________________________________________________
Problem Description:
senddoc uses temporary files (/tmp/log.obr.4043) in a insecure way
which enables local attackers to overwrite arbitrary files by using
a symlink attack (CVE-2008-4937).
This update provides fix for that vulnerability.
Update:
Further this update is a rebuild against (lastest) xulrunner 1.9.0.6.
_______________________________________________________________________
References:
http://cve.mitre.org/cgi-bin/cvename.cg ... -2008-4937
_______________________________________________________________________