On Thu, 2007-01-04 at 14:14 +0100, [EMAIL PROTECTED] wrote: > Hi all, > > A Dutch web site reports today that according to Red Hat there have been > found several buffer overflow bugs in OpenOffice.org, allowing hackers to > execute malicious code if the user opens a manipulated .WMF file. Users > are recommended to download an update immediately from the Red Hat > Network. > > It is not clear from the article whether this affects only the Red Hat > bundled version of OpenOffice.org, or OpenOffice.org in general.
http://www.openoffice.org/servlets/ReadMsg?list=releases&msgNo=10454 If you are on 1.1.X upgrade to the above 1.1.X patch, if you are 2.0.X upgrade to 2.1.0. Or take your vendor supplied backport. Personally I wouldn't worry about it too much, there wasn't an actual implementation in the wild of a useful exploit. C. --------------------------------------------------------------------- To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]
