[ MDVSA-2008:137 ] - Updated OpenOffice.org fix vulnerabilit

Mandrivan turvallisuustiedotteiden tuoreimmat

[ MDVSA-2008:137 ] - Updated OpenOffice.org fix vulnerabilit

Uusi viestiKirjoittaja dude67 » 09 Heinä 2008, 08:13

Updated OpenOffice.org fix vulnerability, and a few other bugs

Integer overflow in the rtl_allocateMemory function in
sal/rtl/source/alloc_global.c in OpenOffice.org (OOo) 2.0 through 2.4
allows remote attackers to execute arbitrary code via a crafted file
that triggers a heap-based buffer overflow. (CVE-2008-2152)

Also, according to bug #38874 decimal numbers on Hebrew documents
would appear as Arabic characters. Another issue (#39799) is with
measurements units configuration to format paragraphs on the menu:
(Tools -> Options -> OpenOffice.org Writer -> General). Even setting
to centimeters on (Indent & Spacing) option it shows as characters
(ch) on (Indents & Spacing) configuration on the menu: (Format ->
Paragraph -> Indents & Spacing). Moreover, a document holding Notes
edited on Microsoft Office would not show when opened with OpenOffice.

These and a number of other OpenOffice.org issues were fixed by the
new version provided in this update.
Kuva
1. Mageia-1 KDE4 x86_64 (& Win7 Pro) | desktop
2. Mageia-2 KDE4 (& Win7 Home Premium) | laptop Acer 7530
3. Mageia-1 KDE4 (& Win7 Starter) | Samsung NC-10 miniläppäri
4. Mageia-1 KDE4 | serverinä toimiva desktop
Luotettavaa Linux käyttöä jo Mandriva 2006.0:sta lähtien :)
Avatar
dude67
Site Admin
 
Viestit: 2256
Liittynyt: 27 Syys 2007, 16:58
Paikkakunta: Espoo

Paluu Mandrivan turvallisuustiedotteet

Paikallaolijat

Käyttäjiä lukemassa tätä aluetta: Ei rekisteröityneitä käyttäjiä ja 49 vierailijaa

cron