Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.61550
Category:Fedora Local Security Checks
Title:Fedora Core 9 FEDORA-2008-7680 (openoffice.org)
Summary:NOSUMMARY
Description:Description:

The remote host is missing an update to openoffice.org
announced via advisory FEDORA-2008-7680.

Update Information:

Resolves: CVE-2008-3282 numeric truncation error in 64bit OOo memory allocator
An update to OpenOffice.org primarily to provide Serbian translations and
support. Additional outstanding fixes for some crashes are provided as well.
ChangeLog:

* Tue Aug 26 2008 Caolan McNamara - 1:2.4.1-17.6
- Resolves: CVE-2008-3282 numeric truncation error in OOo memory allocator
- add openoffice.org-2.4.0.ooo93119.shell.echos.patch

References:

[ 1 ] Bug #458056 - CVE-2008-3282 openoffice.org: numeric truncation error in memory allocator (64bit)
https://bugzilla.redhat.com/show_bug.cgi?id=458056
[ 2 ] Bug #460636 - openoffice.org-core: Insecure auxiliary /tmp file usage (symlink attack possible)
https://bugzilla.redhat.com/show_bug.cgi?id=460636

Solution: Apply the appropriate updates.

This update can be installed with the yum update program. Use
su -c 'yum update openoffice.org' at the command line.
For more information, refer to Managing Software with yum,
available at http://docs.fedoraproject.org/yum/.

http://www.securityspace.com/smysecure/catid.html?in=FEDORA-2008-7680

Risk factor : Critical

CVSS Score:
9.3

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2008-3282
1020764
http://securitytracker.com/id?1020764
30866
http://www.securityfocus.com/bid/30866
31640
http://secunia.com/advisories/31640
31646
http://secunia.com/advisories/31646
31778
http://secunia.com/advisories/31778
ADV-2008-2449
http://www.vupen.com/english/advisories/2008/2449
FEDORA-2008-7531
https://www.redhat.com/archives/fedora-package-announce/2008-September/msg00494.html
FEDORA-2008-7680
https://www.redhat.com/archives/fedora-package-announce/2008-September/msg00120.html
RHSA-2008:0835
http://www.redhat.com/support/errata/RHSA-2008-0835.html
http://www.openoffice.org/issues/show_bug.cgi?id=92217
https://bugzilla.redhat.com/show_bug.cgi?id=455867
https://bugzilla.redhat.com/show_bug.cgi?id=458056
openoffice-rtlallocatememory-code-execution(44742)
https://exchange.xforce.ibmcloud.com/vulnerabilities/44742
oval:org.mitre.oval:def:11345
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11345
CopyrightCopyright (c) 2008 E-Soft Inc. http://www.securityspace.com

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.