Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2008-2152
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2008-2152

Description:
Integer overflow in the rtl_allocateMemory function in sal/rtl/source/alloc_global.c in OpenOffice.org (OOo) 2.0 through 2.4 allows remote attackers to execute arbitrary code via a crafted file that triggers a heap-based buffer overflow.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/42957

SUNALERT
  http://sunsolve.sun.com/search/document.do?assetkey=1-26-237944-1

ST
  1020219

SAID
  Secunia Advisory: SA30635
  Secunia Advisory: SA31029
  Secunia Advisory: SA30633
  Secunia Advisory: SA30634
  Secunia Advisory: SA30599

REDHAT
  http://www.redhat.com/support/errata/RHSA-2008-0537.html
  http://www.redhat.com/support/errata/RHSA-2008-0538.html

MANDRIVA
  http://www.mandriva.com/security/advisories?name=MDVSA-2008:137
  http://www.mandriva.com/security/advisories?name=MDVSA-2008:138

IDEFENSE
  http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=714

GENTOO
  http://security.gentoo.org/glsa/glsa-200807-05.xml

FEDORA

CONFIRM
  http://www.openoffice.org/security/cves/CVE-2008-2152.html

BID
  29622


Return to the previous page.