Before applying this update, make sure that all previously-released
errata relevant to your system have been applied.
This update is available via Red Hat Network. Details on how to use
the Red Hat Network to apply this update are available at
OpenOffice.org is an office productivity suite that includes desktop
applications, such as a word processor, spreadsheet, presentation manager,
formula editor, and a drawing program.
A numeric truncation error was found in the OpenOffice.org memory
allocator. If a carefully crafted file was opened by a victim, an attacker
could use this flaw to crash OpenOffice.org or, possibly, execute arbitrary
code. (CVE-2008-3282)
All users of openoffice.org are advised to upgrade to these updated
packages, which contain a backported patch to correct this issue.
https://www.cve.org/CVERecord?id=CVE-2008-3282 https://access.redhat.com/security/updates/classification#important
Red Hat Enterprise Linux Desktop (v. 5 client):
Source:
i386:
openoffice.org-base-2.3.0-6.5.2.el5_2.i386.rpm
openoffice.org-calc-2.3.0-6.5.2.el5_2.i386.rpm
openoffice.org-core-2.3.0-6.5.2.el5_2.i386.rpm
openoffice.org-debuginfo-2.3.0-6.5.2.el5_2.i386.rpm
openoffice.org-draw-2.3.0-6.5.2.el5_2.i386.rpm
openoffice.org-emailmerge-2.3.0-6.5.2.el5_2.i386.rpm
openoffice.org-graphicfilter-2.3.0-6.5.2.el5_2.i386.rpm
openoffice.org-headless-2.3.0-6.5.2.el5_2.i386.rpm
openoffice.org-impress-2.3.0-6.5.2.el5_2.i386.rpm
openoffice.org-javafilter-2.3.0-6.5.2.el5_2.i386.rpm
openoffice.org-langpack-af_ZA-2.3.0-6.5.2.el5_2.i386.rpm
openoffice.org-langpack-ar-2.3.0-6.5.2.el5_2.i386.rpm
openoffice.org-langpack-as_IN-2.3.0-6.5.2.el5_2.i386.rpm
openoffice.org-langpack-bg_BG-2.3.0-6.5.2.el5_2.i386.rpm
openoffice.org-langpack-bn-2.3.0-6.5.2.el5_2.i386.rpm
openoffice.org-langpack-ca_ES-2.3.0-6.5.2.el5_2.i386.rpm
openoffice.org-langpack-cs_CZ-2.3.0-6.5.2.el5_2.i386.rpm
openoffice.org-langpack-cy_GB-2.3.0-6.5.2.el5_2.i386.rpm
openoffice.org-langpack-da_DK-2.3.0-6.5.2.el5_2.i386.rpm
openoffice.org-langpack-de-2.3.0-6.5.2.el5_2.i386.rpm
openoffice.org-langpack-el_GR-2.3.0-6.5.2.el5_2.i386.rpm
openoffice.org-langpack-es-2.3.0-6.5.2.el5_2.i386.rpm
Read the Full Advisory
Updated openoffice.org packages that fix a security issue are now available
for Red Hat Enterprise Linux 5.
This update has been rated as having important security impact by the Red
Hat Security Response Team.
Red Hat Enterprise Linux Desktop (v. 5 client) - i386, x86_64
RHEL Desktop Workstation (v. 5 client) - i386, x86_64
RHEL Optional Productivity Applications (v. 5 server) - i386, x86_64
458056 - CVE-2008-3282 openoffice.org: numeric truncation error in memory allocator (64bit)
Get the latest Linux and open source security news straight to your inbox.