SciLinux: CVE-2007-0245 openoffice.org SL4.x, i386/x86_64
Summary
Date: Thu, 21 Jun 2007 16:25:08 -0500Reply-To: Troy DawsonSender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA for openoffice.org on SL4.x, i386/x86_64Comments: To: scientific-linux-errata@fnal.govSynopsis: Important: openoffice.org security updateIssue date: 2007-06-13CVE Names: CVE-2007-0245A heap overflow flaw was found in the RTF import filer. An attacker couldcreate a carefully crafted RTF file that could cause OpenOffice.org tocrash or possibly execute arbitrary code if the file was opened by avictim. (CVE-2007-0245)SL 4.x SRPMS: openoffice.org-1.1.5-10.6.0.1.EL4.src.rpm i386: openoffice.org-1.1.5-10.6.0.1.EL4.i386.rpm openoffice.org-i18n-1.1.5-10.6.0.1.EL4.i386.rpm openoffice.org-kde-1.1.5-10.6.0.1.EL4.i386.rpm openoffice.org-libs-1.1.5-10.6.0.1.EL4.i386.rpm x86_64: openoffice.org-1.1.5-10.6.0.1.EL4.i386.rpm openoffice.org-i18n-1.1.5-10.6.0.1.EL4.i386.rpm openoffice.org-kde-1.1.5-10.6.0.1.EL4.i386.rpm openoffice.org-libs-1.1.5-10.6.0.1.EL4.i386.rpm-Connie Sieh-Troy Dawson