Dyon Balding of Secunia Research has reported a flaw in OpenOffice.org's MS Word handling code. When parsing the sprmTInsert record an buffer overflow flaw can be triggered.
Created attachment 358231 [details] final patch combined patch with CVE-2009-0200/CVE-2009-0201
This is public now: http://secunia.com/advisories/35036/
openoffice.org-3.0.1-15.5.fc10 has been submitted as an update for Fedora 10. http://admin.fedoraproject.org/updates/openoffice.org-3.0.1-15.5.fc10
openoffice.org-3.0.1-15.6.fc10 has been submitted as an update for Fedora 10. http://admin.fedoraproject.org/updates/openoffice.org-3.0.1-15.6.fc10
openoffice.org-3.0.1-15.6.fc10 has been pushed to the Fedora 10 stable repository. If problems still persist, please make note of it in this bug report.
This issue has been addressed in following products: Red Hat Enterprise Linux 3 Red Hat Enterprise Linux 4 Red Hat Enterprise Linux 5 Via RHSA-2009:1426 https://rhn.redhat.com/errata/RHSA-2009-1426.html
F11 is already updated to fixed upstream version 3.1.1.
OpenOffice.org Security Bulletin: http://www.openoffice.org/security/cves/CVE-2009-0200-0201.html Fixed upstream in upstream versions 3.1.1 and 2.4.3.