Bug 217957 - CVE-2006-4514 libgsf heap overflow
Summary: CVE-2006-4514 libgsf heap overflow
Keywords:
Status: CLOSED ERRATA
Alias: None
Product: Fedora
Classification: Fedora
Component: libgsf
Version: 6
Hardware: All
OS: Linux
medium
medium
Target Milestone: ---
Assignee: Caolan McNamara
QA Contact:
URL:
Whiteboard: source=idefense,reported=20061130,pub...
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2006-11-30 21:40 UTC by Josh Bressers
Modified: 2007-11-30 22:11 UTC (History)
0 users

Fixed In Version:
Doc Type: Bug Fix
Doc Text:
Clone Of:
Environment:
Last Closed: 2006-12-07 19:11:09 UTC
Type: ---
Embargoed:


Attachments (Terms of Use)

Description Josh Bressers 2006-11-30 21:40:22 UTC
+++ This bug was initially created as a clone of Bug #217949 +++

infamous41md discovered a heap overflow in libgsf.  When a specially crafted OLE
document is opened, it can overflow a buffer possibly leading to arbitrary code
execution.

-- Additional comment from bressers on 2006-11-30 16:08 EST --
Created an attachment (id=142527)
Patch extracted from upstream CVS


This flaw should also affect FC5

Comment 1 Caolan McNamara 2006-12-01 09:35:57 UTC
The FC-6 release already has this fix included, FC-5 update provided

Comment 4 Caolan McNamara 2006-12-07 09:11:14 UTC
rats, cvs lead me astray,
FC-6: libgsf-1.14.1-7

Comment 5 Fedora Update System 2006-12-07 18:09:50 UTC
libgsf-1.14.1-7 has been pushed for fc6, which should resolve this issue.  If these problems are still present in this version, then please make note of it in this bug report.


Note You need to log in before you can comment on or make changes to this bug.