Oval Definition:oval:org.mitre.oval:tst:31138
Comment:openoffice.org-kde is earlier than 0:1.1.2-24.6.0.EL4
Type:rpminfo_testNamespace:linux
Check_Existence:at_least_one_existsCheck:at least one
State Operator:AND
References
Object:oval:org.mitre.oval:obj:13698
State:oval:org.mitre.oval:ste:9447
Referencing Definitions
Definition IDClassTitleLast Modified
oval:org.mitre.oval:def:9106
V
The StgCompObjStream::Load function in OpenOffice.org OpenOffice 1.1.4 and earlier allocates memory based on 16 bit length values, but process memory using 32 bit values, which allows remote attackers to cause a denial of service and possibly execute arbitrary code via a DOC document with certain length values, which leads to a heap-based buffer overflow.
2013-04-29
BACK