+++ This bug was initially created as a clone of Bug #217949 +++ infamous41md discovered a heap overflow in libgsf. When a specially crafted OLE document is opened, it can overflow a buffer possibly leading to arbitrary code execution. -- Additional comment from bressers on 2006-11-30 16:08 EST -- Created an attachment (id=142527) Patch extracted from upstream CVS This flaw should also affect FC5
The FC-6 release already has this fix included, FC-5 update provided
rats, cvs lead me astray, FC-6: libgsf-1.14.1-7
libgsf-1.14.1-7 has been pushed for fc6, which should resolve this issue. If these problems are still present in this version, then please make note of it in this bug report.