Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.881462
Categoría:CentOS Local Security Checks
Título:CentOS Update for autocorr-af CESA-2012:1135 centos6
Resumen:The remote host is missing an update for the 'autocorr-af'; package(s) announced via the referenced advisory.
Descripción:Summary:
The remote host is missing an update for the 'autocorr-af'
package(s) announced via the referenced advisory.

Vulnerability Insight:
LibreOffice is an open source, community-developed office productivity
suite. It includes the key desktop applications, such as a word processor,
spreadsheet application, presentation manager, formula editor, and a
drawing program.

Multiple heap-based buffer overflow flaws were found in the way LibreOffice
processed encryption information in the manifest files of OpenDocument
Format files. An attacker could provide a specially-crafted OpenDocument
Format file that, when opened in a LibreOffice application, would cause the
application to crash or, potentially, execute arbitrary code with the
privileges of the user running the application. (CVE-2012-2665)

Upstream acknowledges Timo Warns as the original reporter of these issues.

All LibreOffice users are advised to upgrade to these updated packages,
which contain backported patches to correct these issues. All running
instances of LibreOffice applications must be restarted for this update to
take effect.

Affected Software/OS:
autocorr-af on CentOS 6

Solution:
Please install the updated packages.

CVSS Score:
7.5

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:P/A:P

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2012-2665
1027331
http://www.securitytracker.com/id?1027331
1027332
http://www.securitytracker.com/id?1027332
50142
http://secunia.com/advisories/50142
50146
http://secunia.com/advisories/50146
50692
http://secunia.com/advisories/50692
54769
http://www.securityfocus.com/bid/54769
60799
http://secunia.com/advisories/60799
DSA-2520
http://www.debian.org/security/2012/dsa-2520
GLSA-201209-05
http://security.gentoo.org/glsa/glsa-201209-05.xml
GLSA-201408-19
http://www.gentoo.org/security/en/glsa/glsa-201408-19.xml
RHSA-2012:1135
http://rhn.redhat.com/errata/RHSA-2012-1135.html
USN-1536-1
http://www.ubuntu.com/usn/USN-1536-1
USN-1537-1
http://www.ubuntu.com/usn/USN-1537-1
http://www.libreoffice.org/about-us/security/advisories/cve-2012-2665/
http://www.pre-cert.de/advisories/PRE-SA-2012-05.txt
https://bugzilla.redhat.com/show_bug.cgi?id=826077
CopyrightCopyright (C) 2012 Greenbone AG

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.