Rapid7 Vulnerability & Exploit Database

ELSA-2012-1135 Important: Oracle Linux libreoffice security update

Free InsightVM Trial No credit card necessary
Watch Demo See how it all works
Back to Search

ELSA-2012-1135 Important: Oracle Linux libreoffice security update

Severity
8
CVSS
(AV:N/AC:L/Au:N/C:P/I:P/A:P)
Published
08/06/2012
Created
07/25/2018
Added
08/07/2012
Modified
07/04/2017

Description

Multiple heap-based buffer overflows in the XML manifest encryption tag parsing functionality in OpenOffice.org and LibreOffice before 3.5.5 allow remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted Open Document Text (.odt) file with (1) a child tag within an incorrect parent tag, (2) duplicate tags, or (3) a Base64 ChecksumAttribute whose length is not evenly divisible by four.

Solution(s)

  • oracle-linux-upgrade-autocorr-af
  • oracle-linux-upgrade-autocorr-bg
  • oracle-linux-upgrade-autocorr-cs
  • oracle-linux-upgrade-autocorr-da
  • oracle-linux-upgrade-autocorr-de
  • oracle-linux-upgrade-autocorr-en
  • oracle-linux-upgrade-autocorr-es
  • oracle-linux-upgrade-autocorr-eu
  • oracle-linux-upgrade-autocorr-fa
  • oracle-linux-upgrade-autocorr-fi
  • oracle-linux-upgrade-autocorr-fr
  • oracle-linux-upgrade-autocorr-ga
  • oracle-linux-upgrade-autocorr-hr
  • oracle-linux-upgrade-autocorr-hu
  • oracle-linux-upgrade-autocorr-it
  • oracle-linux-upgrade-autocorr-ja
  • oracle-linux-upgrade-autocorr-ko
  • oracle-linux-upgrade-autocorr-lb
  • oracle-linux-upgrade-autocorr-lt
  • oracle-linux-upgrade-autocorr-mn
  • oracle-linux-upgrade-autocorr-nl
  • oracle-linux-upgrade-autocorr-pl
  • oracle-linux-upgrade-autocorr-pt
  • oracle-linux-upgrade-autocorr-ru
  • oracle-linux-upgrade-autocorr-sk
  • oracle-linux-upgrade-autocorr-sl
  • oracle-linux-upgrade-autocorr-sr
  • oracle-linux-upgrade-autocorr-sv
  • oracle-linux-upgrade-autocorr-tr
  • oracle-linux-upgrade-autocorr-vi
  • oracle-linux-upgrade-autocorr-zh
  • oracle-linux-upgrade-libreoffice
  • oracle-linux-upgrade-libreoffice-base
  • oracle-linux-upgrade-libreoffice-bsh
  • oracle-linux-upgrade-libreoffice-calc
  • oracle-linux-upgrade-libreoffice-core
  • oracle-linux-upgrade-libreoffice-draw
  • oracle-linux-upgrade-libreoffice-emailmerge
  • oracle-linux-upgrade-libreoffice-gdb-debug-support
  • oracle-linux-upgrade-libreoffice-graphicfilter
  • oracle-linux-upgrade-libreoffice-headless
  • oracle-linux-upgrade-libreoffice-impress
  • oracle-linux-upgrade-libreoffice-javafilter
  • oracle-linux-upgrade-libreoffice-langpack-af
  • oracle-linux-upgrade-libreoffice-langpack-ar
  • oracle-linux-upgrade-libreoffice-langpack-as
  • oracle-linux-upgrade-libreoffice-langpack-bg
  • oracle-linux-upgrade-libreoffice-langpack-bn
  • oracle-linux-upgrade-libreoffice-langpack-ca
  • oracle-linux-upgrade-libreoffice-langpack-cs
  • oracle-linux-upgrade-libreoffice-langpack-cy
  • oracle-linux-upgrade-libreoffice-langpack-da
  • oracle-linux-upgrade-libreoffice-langpack-de
  • oracle-linux-upgrade-libreoffice-langpack-dz
  • oracle-linux-upgrade-libreoffice-langpack-el
  • oracle-linux-upgrade-libreoffice-langpack-en
  • oracle-linux-upgrade-libreoffice-langpack-es
  • oracle-linux-upgrade-libreoffice-langpack-et
  • oracle-linux-upgrade-libreoffice-langpack-eu
  • oracle-linux-upgrade-libreoffice-langpack-fi
  • oracle-linux-upgrade-libreoffice-langpack-fr
  • oracle-linux-upgrade-libreoffice-langpack-ga
  • oracle-linux-upgrade-libreoffice-langpack-gl
  • oracle-linux-upgrade-libreoffice-langpack-gu
  • oracle-linux-upgrade-libreoffice-langpack-he
  • oracle-linux-upgrade-libreoffice-langpack-hi
  • oracle-linux-upgrade-libreoffice-langpack-hr
  • oracle-linux-upgrade-libreoffice-langpack-hu
  • oracle-linux-upgrade-libreoffice-langpack-it
  • oracle-linux-upgrade-libreoffice-langpack-ja
  • oracle-linux-upgrade-libreoffice-langpack-kn
  • oracle-linux-upgrade-libreoffice-langpack-ko
  • oracle-linux-upgrade-libreoffice-langpack-lt
  • oracle-linux-upgrade-libreoffice-langpack-mai
  • oracle-linux-upgrade-libreoffice-langpack-ml
  • oracle-linux-upgrade-libreoffice-langpack-mr
  • oracle-linux-upgrade-libreoffice-langpack-ms
  • oracle-linux-upgrade-libreoffice-langpack-nb
  • oracle-linux-upgrade-libreoffice-langpack-nl
  • oracle-linux-upgrade-libreoffice-langpack-nn
  • oracle-linux-upgrade-libreoffice-langpack-nr
  • oracle-linux-upgrade-libreoffice-langpack-nso
  • oracle-linux-upgrade-libreoffice-langpack-or
  • oracle-linux-upgrade-libreoffice-langpack-pa
  • oracle-linux-upgrade-libreoffice-langpack-pl
  • oracle-linux-upgrade-libreoffice-langpack-pt-br
  • oracle-linux-upgrade-libreoffice-langpack-pt-pt
  • oracle-linux-upgrade-libreoffice-langpack-ro
  • oracle-linux-upgrade-libreoffice-langpack-ru
  • oracle-linux-upgrade-libreoffice-langpack-sk
  • oracle-linux-upgrade-libreoffice-langpack-sl
  • oracle-linux-upgrade-libreoffice-langpack-sr
  • oracle-linux-upgrade-libreoffice-langpack-ss
  • oracle-linux-upgrade-libreoffice-langpack-st
  • oracle-linux-upgrade-libreoffice-langpack-sv
  • oracle-linux-upgrade-libreoffice-langpack-ta
  • oracle-linux-upgrade-libreoffice-langpack-te
  • oracle-linux-upgrade-libreoffice-langpack-th
  • oracle-linux-upgrade-libreoffice-langpack-tn
  • oracle-linux-upgrade-libreoffice-langpack-tr
  • oracle-linux-upgrade-libreoffice-langpack-ts
  • oracle-linux-upgrade-libreoffice-langpack-uk
  • oracle-linux-upgrade-libreoffice-langpack-ur
  • oracle-linux-upgrade-libreoffice-langpack-ve
  • oracle-linux-upgrade-libreoffice-langpack-xh
  • oracle-linux-upgrade-libreoffice-langpack-zh-hans
  • oracle-linux-upgrade-libreoffice-langpack-zh-hant
  • oracle-linux-upgrade-libreoffice-langpack-zu
  • oracle-linux-upgrade-libreoffice-math
  • oracle-linux-upgrade-libreoffice-ogltrans
  • oracle-linux-upgrade-libreoffice-opensymbol-fonts
  • oracle-linux-upgrade-libreoffice-pdfimport
  • oracle-linux-upgrade-libreoffice-presentation-minimizer
  • oracle-linux-upgrade-libreoffice-presenter-screen
  • oracle-linux-upgrade-libreoffice-pyuno
  • oracle-linux-upgrade-libreoffice-report-builder
  • oracle-linux-upgrade-libreoffice-rhino
  • oracle-linux-upgrade-libreoffice-sdk
  • oracle-linux-upgrade-libreoffice-sdk-doc
  • oracle-linux-upgrade-libreoffice-testtools
  • oracle-linux-upgrade-libreoffice-ure
  • oracle-linux-upgrade-libreoffice-wiki-publisher
  • oracle-linux-upgrade-libreoffice-writer
  • oracle-linux-upgrade-libreoffice-xsltfilter

With Rapid7 live dashboards, I have a clear view of all the assets on my network, which ones can be exploited, and what I need to do in order to reduce the risk in my environment in real-time. No other tool gives us that kind of value and insight.

– Scott Cheney, Manager of Information Security, Sierra View Medical Center

;