Openoffice.org Vulnerable

Will Dormann and Jared Allar discovered that the Lotus Word Pro import filter of OpenOffice.org, a full-featured office productivity suite that provides a near drop-in replacement for Microsoft Office, is not properly handling object ids in the .lwp file format. An attacker can exploit this with a specially crafted file and execute arbitrary code with the rights of the victim importing the file.
For Debian users this bug has been fixed at version 1:3.2.1-11+squeeze3.
We recommend that you upgrade your openoffice.org packages to fixed that bug, all download application that has been fixed on squeeze3

Reference: http://www.debian.org

0 comments:

Post a Comment

:) :)) ;(( :-) =)) ;( ;-( :d :-d @-) :p :o :>) (o) [-( :-? (p) :-s (m) 8-) :-t :-b b-( :-# =p~ $-) (b) (f) x-) (k) (h) (c) cheer
Click to see the code!
To insert emoticon you must added at least one space before the code.