An anonymous researcher reported to iDefense a heap overflow in TIFF parsing in OpenOffice.org. If a victim opens a carefully crafted document containing a malicious TIFF file it could lead to arbitrary code execution. Embargo set to 20070904
Created attachment 161195 [details] proposed patch
Vulnerability was publicly announced by OpenOffice.org project and fixed in OpenOffice.org 2.3: http://www.openoffice.org/security/cves/CVE-2007-2834.html Removing embargo.
This issue was addressed in: Red Hat Enterprise Linux: http://rhn.redhat.com/errata/RHSA-2007-0848.html Fedora: https://admin.fedoraproject.org/updates/F7/FEDORA-2007-2372