Attack (Attack ID:710945)

Release Date2010/03/09

Attack NameFILE OpenOffice EMF file EMR_BITBLT record integer overflow (CVE-2007-5746)

Severity

BUG ID

CVE ID

 

Description

Integer overflow in OpenOffice.org before 2.4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via an EMF file with a crafted EMR_STRETCHBLT record, which triggers a heap-based buffer overflow.
Impact:Remote code execution
Affected System:Windows, Linux, FreeBSD, Solaris, Other Unix, Mac OS
Additional References:CVE-2007-5746

 

Solution

Update vendor's patch.