USN-121-1: OpenOffice.org vulnerability
==========================================================
Ubuntu Security Notice USN-121-1 May 06, 2005
openoffice.org vulnerability
CAN-2005-0941
===========================================================
A security issue affects the following Ubuntu releases:
Ubuntu 4.10 (Warty Warthog)
Ubuntu 5.04 (Hoary Hedgehog)
The following packages are affected:
openoffice.org-bin
openoffice.org-l10n-xh
The problem can be corrected by upgrading the affected package to
version 1.1.2-2ubuntu6.1 (for Ubuntu 4.10 on i386 and powerpc),
1.1.2-2ubuntu6.1-1 (for Ubuntu 4.10 on amd64), 1.1.3-8ubuntu2.3 (for
Ubuntu 5.04 on i386 and powerpc), or 1.1.3-8ubuntu2.3-1 (for Ubuntu
5.04 on amd64). In general, a standard system upgrade is sufficient
to effect the necessary changes.
Details follow:
The StgCompObjStream::Load() failed to check the validity of a length
field in documents. If an attacker tricked a user to open a specially
crafted OpenOffice file, this triggered a buffer overflow which could
lead to arbitrary code execution with the privileges of the user
opening the document.
The update for Ubuntu 5.04 (Hoary Hedgehog) also contains a
translation update: The "openoffice.org-l10n-xh" package now contains
actual Xhosa translations (the previous version just shipped English
strings).



