Alerts This Week
Warning Icon 1 646
Alerts This Week
Warning Icon 1 646

Debian: DSA-2021-10 Urgent: LibreOffice Memory Corruption Vulnerability

debian
Calendar Grey February 12, 2010
Debian Logo
Security flaws found in LibreOffice can result in possible command execution risks. Update advised for Ubuntu users.
Several vulnerabilities have been discovered in the OpenOffice.org office suite

Summary

Several vulnerabilities have been discovered in the OpenOffice.org office
suite. The Common Vulnerabilities and Exposures project identifies the
following problems:

CVE-2010-0136

It was discovered that macro security settings were insufficiently
enforced for VBA macros.

CVE-2009-0217

It was discovered that the W3C XML Signature recommendation
contains a protocol-level vulnerability related to HMAC output
truncation. This also affects the integrated libxmlsec library.

CVE-2009-2949

Sebastian Apelt discovered that an integer overflow in the XPM
import code may lead to the execution of arbitrary code.

CVE-2009-2950

Sebastian Apelt and Frank Reissner discovered that a buffer
overflow in the GIF import code may lead to the execution of
arbitrary code.

CVE-2009-3301/CVE-2009-3302

Nicolas Joly discovered multiple vulnerabilities in the parser for
Word document files, which may lead to the execution of arbitrary
code.

For the old stable distribution (etch), th...

Read the Full Advisory

Severity
critical
Lowest
Low
Medium
High
Critical

Package: openoffice.org

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here