Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2008-2238
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2008-2238

Description:
Multiple integer overflows in OpenOffice.org (OOo) 2.x before 2.4.2 allow remote attackers to execute arbitrary code via crafted EMR records in an EMF file associated with a StarOffice/StarSuite document, which trigger a heap-based buffer overflow.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/46166

UBUNTU
  http://www.ubuntu.com/usn/usn-677-2

SUSE
  http://lists.opensuse.org/opensuse-security-announce/2008-11/msg00002.html

SUNALERT
  http://sunsolve.sun.com/search/document.do?assetkey=1-26-243226-1

ST
  1021121

SAID
  Secunia Advisory: SA32676
  Secunia Advisory: SA32872
  Secunia Advisory: SA33140
  Secunia Advisory: SA32419
  Secunia Advisory: SA32461
  Secunia Advisory: SA32463
  Secunia Advisory: SA32489

REDHAT
  http://www.redhat.com/support/errata/RHSA-2008-0939.html

IDEFENSE
  http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=750

GENTOO
  http://security.gentoo.org/glsa/glsa-200812-13.xml

FEDORA

DEBIAN
  http://www.debian.org/security/2008/dsa-1661

CONFIRM
  http://www.openoffice.org/security/cves/CVE-2008-2238.html
  http://neowiki.neooffice.org/index.php/NeoOffice_2.2.5_Patch_3_New_Features#Security_fixes

BID
  31962


Return to the previous page.