| |||||||||||||
| Test Kennung: | 1.3.6.1.4.1.25623.1.0.52550 |
| Kategorie: | Mandrake Local Security Checks |
| Titel: | Mandrake Security Advisory MDKSA-2005:082 (OpenOffice.org) |
| Zusammenfassung: | Mandrake Security Advisory MDKSA-2005:082 (OpenOffice.org) |
| Beschreibung: | The remote host is missing an update to OpenOffice.org announced via advisory MDKSA-2005:082. AD-LAB discovered a heap overflow in the StgCompObjStream::Load() function when OpenOffice.org processes DOC documents. If an attacker created a malicious DOC document that contained a specially crafted header, it could execute arbitrary code with the rights of the user running OpenOffice.org. The updated packages have been patched to prevent this problem. Affected versions: 10.1, 10.2, Corporate 3.0 Solution: To upgrade automatically use MandrakeUpdate or urpmi. The verification of md5 checksums and GPG signatures is performed automatically for you. http://www.securityspace.com/smysecure/catid.html?in=MDKSA-2005:082 http://www.openoffice.org/issues/show_bug.cgi?id=46388 Risk factor : High |
| Querverweis: |
BugTraq ID: 13092 Common Vulnerability Exposure (CVE) ID: CVE-2005-0941 Bugtraq: 20050412 OpenOffice DOC document Heap Overflow (Google Search) http://www.securityfocus.com/archive/1/395516 http://www.gentoo.org/security/en/glsa/glsa-200504-13.xml http://www.redhat.com/support/errata/RHSA-2005-375.html SuSE Security Announcement: SUSE-SR:2005:021 (Google Search) http://www.novell.com/linux/security/advisories/2005_21_sr.html http://www.securityfocus.com/bid/13092 http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:9106 http://secunia.com/advisories/17027 |
| Copyright | Copyright (c) 2005 E-Soft Inc. http://www.securityspace.com |
| Dies ist nur einer von 32582 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus. Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten. |
|