Oval Definition:oval:org.opensuse.security:def:20122665
Revision Date:2017-09-27Version:1
Title:CVE-2012-2665
Description:

Multiple heap-based buffer overflows in the XML manifest encryption tag parsing functionality in OpenOffice.org and LibreOffice before 3.5.5 allow remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted Open Document Text (.odt) file with (1) a child tag within an incorrect parent tag, (2) duplicate tags, or (3) a Base64 ChecksumAttribute whose length is not evenly divisible by four.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2012-2665
Platform(s):SLE SDK 10 SP4 for x86
SLE SDK 10 SP4 for X86-64
SUSE Linux Enterprise Desktop 10 SP4 for AMD64 and Intel EM64T
SUSE Linux Enterprise Desktop 10 SP4 for x86
Product(s):
Definition Synopsis
  • sles10-sp4-sdk is installed
  • AND Package Information
  • libreoffice-cs less than 3.5.4.7-0.7.1
  • OR libreoffice-de less than 3.5.4.7-0.7.1
  • OR libreoffice-es less than 3.5.4.7-0.7.1
  • OR libreoffice-fr less than 3.5.4.7-0.7.1
  • OR libreoffice-galleries less than 3.5.4.7-0.7.1
  • OR libreoffice-gnome less than 3.5.4.7-0.7.1
  • OR libreoffice-hu less than 3.5.4.7-0.7.1
  • OR libreoffice-it less than 3.5.4.7-0.7.1
  • OR libreoffice-ja less than 3.5.4.7-0.7.1
  • OR libreoffice-kde less than 3.5.4.7-0.7.1
  • OR libreoffice-mono less than 3.5.4.7-0.7.1
  • OR libreoffice-pl less than 3.5.4.7-0.7.1
  • OR libreoffice-pt-BR less than 3.5.4.7-0.7.1
  • OR libreoffice-sk less than 3.5.4.7-0.7.1
  • OR libreoffice-zh-CN less than 3.5.4.7-0.7.1
  • OR libreoffice-zh-TW less than 3.5.4.7-0.7.1
  • OR libreoffice less than 3.5.4.7-0.7.1
  • BACK