J-Security Center

Title: Star Office 5.1 Buffer Overflow Vulnerabilities

Severity: MODERATE

Description:

A number of buffer overflow vulnerabilities exist in Star Office 5.1, from Sun Microsystems. While an exact list of all the vulnerabilities present was not made available, a number of them seem to relate to URL code, in both HTML and Star Office native format. By supplying either html or a native document with a long URL, it is possible to cause Star Office to buffer overflow, due to an unchecked strcpy() taking place.

In order for this attack to be successful, a user would have to download either an html or Star Office document (although other formats, such as Word might work as well), and load it in to Star Office. The attacker would have embedded shellcode, in the form of a long URL, in to the document, and would be able to execute code as the user running Star Office.

Affected Products:

  • Sun StarOffice 5.1.0

Juniper Networks provides this content via a wide variety of sources and production methods. If notified of errors or omissions in the content of this page, Juniper Networks, at its discretion, will modify or remove the page or leave the content as is, depending on various factors including but not limited to the reputation and authority of the party providing the notification. Please use the contact information displayed elsewhere on this page to report any errors or omissions regarding the content on this page.