USN-203-1: Abiword vulnerabilities
13 October 2005
Abiword vulnerabilities
Releases
Details
Chris Evans discovered several buffer overflows in the RTF import
module of AbiWord. By tricking a user into opening an RTF file with
specially crafted long identifiers, an attacker could exploit this to
execute arbitrary code with the privileges of the AbiWord user.
Update instructions
The problem can be corrected by updating your system to the following package versions:
Ubuntu 5.04
-
abiword
-
Ubuntu 4.10
-
abiword
-
In general, a standard system update will make all the necessary changes.