Wednesday, June 13, 2007

OpenOffice RTF File Parsing Buffer Overflow Vulnerability

http://secunia.com/advisories/25648/

A vulnerability has been reported in OpenOffice, which can potentially be exploited by malicious people to compromise a user's system.


The vulnerability is caused due to an error in the parsing of RTF files and can be exploited to cause a heap based buffer overflow via a specially crafted RTF file.

Successful exploitation may allow execution of arbitrary code.

SOLUTION:
Do not open untrusted RTF files.

No comments:

Post a Comment