Bug 154541 - CAN-2005-0941 openoffice.org heap overflow
Summary: CAN-2005-0941 openoffice.org heap overflow
Status: CLOSED CURRENTRELEASE
Alias: None
Product: Fedora
Classification: Fedora
Component: openoffice.org
Version: 3
Hardware: All
OS: Linux
medium
high
Target Milestone: ---
Assignee: Caolan McNamara
QA Contact:
URL:
Whiteboard: impact=important,public=20050412,sour...
Keywords: Security
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2005-04-12 15:24 UTC by Josh Bressers
Modified: 2007-11-30 22:11 UTC (History)
1 user (show)

(edit)
Clone Of:
(edit)
Last Closed: 2005-04-14 07:21:26 UTC


Attachments (Terms of Use)

Description Josh Bressers 2005-04-12 15:24:39 UTC
+++ This bug was initially created as a clone of Bug #154540 +++

A heap overflow was reported in openoffice.org
http://www.securityfocus.com/archive/1/395516/2005-04-08/2005-04-14/0


The patch is located here:
http://util.openoffice.org/source/browse/util/sot/source/sdstor/stgole.cxx?r1=1.4&r2=1.4.166.1

The upstream bug with a demo exploit is here:
http://www.openoffice.org/issues/show_bug.cgi?id=46388

Comment 1 Caolan McNamara 2005-04-12 15:34:14 UTC
builds underway

Comment 2 Caolan McNamara 2005-04-14 07:21:26 UTC
FC3: openoffice.org-1.1.3-11.5.0.fc3
FC4: openoffice.org-1.9.92-2


Note You need to log in before you can comment on or make changes to this bug.