Overview
Multiple buffer overflow vulnerabilities exist in the OpenOffice.org office suite. If successfully exploited, these vulnerabilities may allow an attacker to execute arbitrary code on a vulnerable system.
Description
OpenOffice.org is a free office suite that is available for multiple operating systems. Windows Metafile (WMF) is a vector graphics format that was designed by Microsoft for Windows 3.0. A newer version of WMF, known as Enhanced Metafile (EMF) was designed for 32-bit operating systems. |
Impact
A remote unauthenticated attacker may be able to execute arbitrary code on a vulnerable system. |
Solution
Upgrade |
|
Vendor Information
CVSS Metrics
Group | Score | Vector |
---|---|---|
Base | ||
Temporal | ||
Environmental |
References
- http://www.openoffice.org/issues/show_bug.cgi?id=70042
- http://www.securityfocus.com/bid/21861
- http://www.ngssoftware.com/advisories/high-risk-vulnerabilities-in-the-openoffice-suite/
- http://secunia.com/advisories/23612/
- http://secunia.com/advisories/23616/
- http://secunia.com/advisories/23600/
- http://secunia.com/advisories/23549/
- http://secunia.com/advisories/23712/
- http://secunia.com/advisories/23682/
- http://secunia.com/advisories/23683/
- http://secunia.com/advisories/23620/
- http://secunia.com/advisories/23920/
Acknowledgements
Thanks to the OpenOffice.org team for information used in this report.
This document was written by Ryan Giobbi.
Other Information
CVE IDs: | CVE-2006-5870 |
Date Public: | 2007-01-04 |
Date First Published: | 2007-01-05 |
Date Last Updated: | 2007-06-07 01:19 UTC |
Document Revision: | 43 |