Red Hat Bugzilla – Bug 502194
CVE-2009-0201 OpenOffice.org Word document buffer overflow
Last modified: 2009-09-07 15:05:57 EDT
Dyon Balding of Secunia Research has reported a flaw in OpenOffice.org's MS
Word handling code. When parsing the sprmTInsert record an buffer overflow flaw
can be triggered.
Created attachment 358231 [details]
combined patch with CVE-2009-0200/CVE-2009-0201
This is public now: http://secunia.com/advisories/35036/
openoffice.org-3.0.1-15.5.fc10 has been submitted as an update for Fedora 10.
openoffice.org-3.0.1-15.6.fc10 has been submitted as an update for Fedora 10.
openoffice.org-3.0.1-15.6.fc10 has been pushed to the Fedora 10 stable repository. If problems still persist, please make note of it in this bug report.
This issue has been addressed in following products:
Red Hat Enterprise Linux 3
Red Hat Enterprise Linux 4
Red Hat Enterprise Linux 5
Via RHSA-2009:1426 https://rhn.redhat.com/errata/RHSA-2009-1426.html
F11 is already updated to fixed upstream version 3.1.1.
OpenOffice.org Security Bulletin:
Fixed upstream in upstream versions 3.1.1 and 2.4.3.