Bug 450518 (CVE-2008-2152) - CVE-2008-2152 OpenOffice.org overflow possible on allocation
Summary: CVE-2008-2152 OpenOffice.org overflow possible on allocation
Keywords:
Status: CLOSED ERRATA
Alias: CVE-2008-2152
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
high
high
Target Milestone: ---
Assignee: Red Hat Product Security
QA Contact:
URL:
Whiteboard:
Depends On: 450520 450521 450522 450523 450524 450525 450526 450649 450650
Blocks:
TreeView+ depends on / blocked
 
Reported: 2008-06-09 11:52 UTC by Mark J. Cox
Modified: 2019-09-29 12:24 UTC (History)
4 users (show)

Fixed In Version: 2.3.0-6.9.fc7
Clone Of:
Environment:
Last Closed: 2008-06-19 10:52:35 UTC
Embargoed:


Attachments (Terms of Use)
oo2 patch from caolan (805 bytes, patch)
2008-06-09 11:54 UTC, Mark J. Cox
no flags Details | Diff
oo1.1 backported patch from caolan (1.64 KB, patch)
2008-06-09 11:54 UTC, Mark J. Cox
no flags Details | Diff


Links
System ID Private Priority Status Summary Last Updated
Red Hat Product Errata RHSA-2008:0537 0 normal SHIPPED_LIVE Important: openoffice.org security update 2008-06-13 02:29:00 UTC
Red Hat Product Errata RHSA-2008:0538 0 normal SHIPPED_LIVE Important: openoffice.org security update 2008-06-13 03:03:12 UTC

Description Mark J. Cox 2008-06-09 11:52:26 UTC
Sean Larsson found a heap overflow flaw in the OpenOffice memory allocator.  An
attacker could create a carefully crafted file that could cause OpenOffice.org
to crash or possibly execute arbitrary code if the file was opened by a victim.
(CVE-2008-2152) 

This probably affects all OpenOffice shipped in RHEL3,4,5

Embargo is Jun 10 or 11 (2.4.1 release of OpenOffice.org)

Comment 2 Mark J. Cox 2008-06-09 11:54:25 UTC
Created attachment 308679 [details]
oo2 patch from caolan

Comment 3 Mark J. Cox 2008-06-09 11:54:46 UTC
Created attachment 308680 [details]
oo1.1 backported patch from caolan

Comment 6 Mark J. Cox 2008-06-10 07:05:59 UTC
opening bug, now public at:
http://www.openoffice.org/security/cves/CVE-2008-2152.html

Comment 8 Fedora Update System 2008-06-11 04:38:59 UTC
openoffice.org-2.4.1-17.3.fc9 has been pushed to the Fedora 9 stable repository.  If problems still persist, please make note of it in this bug report.

Comment 9 Fedora Update System 2008-06-11 07:24:15 UTC
openoffice.org-2.3.0-6.15.fc8 has been submitted as an update for Fedora 8

Comment 10 Fedora Update System 2008-06-11 07:25:03 UTC
openoffice.org-2.3.0-6.9.fc7 has been submitted as an update for Fedora 7

Comment 12 Fedora Update System 2008-06-11 23:34:10 UTC
openoffice.org-2.3.0-6.9.fc7 has been pushed to the Fedora 7 stable repository.  If problems still persist, please make note of it in this bug report.

Comment 13 Fedora Update System 2008-06-11 23:35:24 UTC
openoffice.org-2.3.0-6.15.fc8 has been pushed to the Fedora 8 stable repository.  If problems still persist, please make note of it in this bug report.


Note You need to log in before you can comment on or make changes to this bug.