CVE-2008-0320

Publication date 17 April 2008

Last updated 24 July 2024


Ubuntu priority

Heap-based buffer overflow in the OLE importer in OpenOffice.org before 2.4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via an OLE file with a crafted DocumentSummaryInformation stream.

Status

Package Ubuntu Release Status
hsqldb 8.04 LTS hardy
Not affected
7.10 gutsy
Not affected
7.04 feisty
Not affected
6.06 LTS dapper
Not affected
openoffice.org 8.04 LTS hardy
Not affected
7.10 gutsy
Fixed 1:2.3.0-1ubuntu5.4
7.04 feisty
Fixed 2.2.0-1ubuntu6
6.06 LTS dapper
Fixed 2.0.2-2ubuntu12.6
openoffice.org-amd64 6.06 LTS dapper
Fixed 2.0.2-2ubuntu12.6-1

References

Related Ubuntu Security Notices (USN)

    • USN-609-1
    • OpenOffice.org vulnerabilities
    • 6 May 2008

Other references