Alerts This Week
Warning Icon 1 566
Alerts This Week
Warning Icon 1 566

Ubuntu 12.04 LTS USN-1525-1 Moderate: Calligra Code Execution Risk

Ubuntu Large Esm H500
Calligra could be made to crash or run programs as your login if it opened a specially crafted file.
=========================================================================Ubuntu Security Notice USN-1525-1
August 09, 2012

calligra vulnerability
=========================================================================
A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 12.04 LTS

Summary:

Calligra could be made to crash or run programs as your login if it opened
a specially crafted file.

Software Description:
- calligra: integrated work applications suite

Details:

It was discovered that Calligra incorrectly handled certain malformed
MS Word documents. If a user or automated system were tricked into opening
a crafted MS Word file, an attacker could cause a denial of service or
execute arbitrary code with privileges of the user invoking the program.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 12.04 LTS:
  calligra                        1:2.4.0-0ubuntu2.1

After a standard system update you need to restart Calligra to make
all the necessary changes.

References:
  https://ubuntu.com/security/notices/USN-1525-1
  CVE-2012-3456

Package Information:
  https://launchpad.net/ubuntu/+source/calligra/1:2.4.0-0ubuntu2.1


Ubuntu 12.04 LTS USN-1525-1 Moderate: Calligra Code Execution Risk

ubuntu
Calendar Grey August 9, 2012
Dist Ubuntu Esm H88
A flaw in Calligra posed threats to user safety. Upgrade your Ubuntu system to bolster defenses and reduce potential intrusions.
Calligra could be made to crash or run programs as your login if it opened a specially crafted file.

Summary

Update Instructions

The problem can be corrected by updating your system to the following package versions: Ubuntu 12.04 LTS: calligra 1:2.4.0-0ubuntu2.1 After a standard system update you need to restart Calligra to make all the necessary changes.

References

https://ubuntu.com/security/notices/USN-1525-1

CVE-2012-3456

Severity
important
Lowest
Low
Medium
High
Critical

August 09, 2012

Package Information

https://launchpad.net/ubuntu/+source/calligra/1:2.4.0-0ubuntu2.1

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here