[Full-disclosure] OpenOffice.org issued a WMF code execution fix

Juha-Matti Laurio juha-matti.laurio at netti.fi
Thu Jan 4 11:27:24 GMT 2007


And the related OpenOffice Isue 70042 document opened on 2nd Oct is located at
http://www.openoffice.org/issues/show_bug.cgi?id=70042

These issues are fixed in version 2.1.

- Juha-Matti


Juha-Matti Laurio <juha-matti.laurio at netti.fi> wrote: 
> It appears that OpenOffice.org has issued a patch for WMF/EMF heap overflow vulnerability.
> 
> Both versions 1.1.x and 2.x are affected to this issue.
> According to Bugzilla entry code execution is possible.
> 
> More details via
> https://rhn.redhat.com/errata/RHSA-2007-0001.html
> 
> and
> http://blogs.securiteam.com/?p=785
> (including more references)
> 
> - Juha-Matti




Full-Disclosure is hosted and sponsored by Secunia.