|
Some vulnerabilities have been reported in OpenOffice, which can be exploited by malicious people to potentially compromise a user's system. 1) An integer underflow error when parsing certain records can be exploited to cause a heap-based buffer overflow via a specially crafted Microsoft Word document. 2) A boundary error when parsing certain records can be exploited to cause a heap-based buffer overflow via a specially crafted Microsoft Word document. Successful exploitation of the vulnerabilities may allow execution of arbitrary code. The vulnerabilities are confirmed in version 3.1.0. Prior versions may also be affected. 3) Two errors in the processing of XML documents can be exploited to potentially execute arbitrary code via specially crafted XML documents. This is related to: SA36631 The vulnerabilities are reported in versions prior to 3.1.1 and 2.4.3.
|