Title: OpenOffice XML File Format Buffer Overflow Vulnerability
Severity: HIGH
Description:
OpenOffice is a multiplatform office suite. Current versions can read and write XML documents and files.
OpenOffice is prone to buffer overflow that allows attackers to gain unauthorized access to a vulnerable computer. This issue likely results from a boundary condition error when processing malformed XML files.
The vendor has reported that exploitation of this buffer overflow allows attackers to execute arbitrary system commands on a vulnerable computer. Command execution would occur in the context of the user who accessed the malicious XML document.
Successful exploitation may result in the destruction of data, the loss of confidential information, and ultimately a complete system compromise.
Affected Products:
- Debian Linux 3.1.0
- Debian Linux 3.1.0 alpha
- Debian Linux 3.1.0 amd64
- Debian Linux 3.1.0 arm
- Debian Linux 3.1.0 hppa
- Debian Linux 3.1.0 ia-32
- Debian Linux 3.1.0 ia-64
- Debian Linux 3.1.0 m68k
- Debian Linux 3.1.0 mips
- Debian Linux 3.1.0 mipsel
- Debian Linux 3.1.0 ppc
- Debian Linux 3.1.0 s/390
- Debian Linux 3.1.0 sparc
- Gentoo Linux
- MandrakeSoft Corporate Server 3.0.0
- MandrakeSoft Corporate Server 3.0.0 x86_64
- MandrakeSoft Linux Mandrake 2006.0.0
- MandrakeSoft Linux Mandrake 2006.0.0 x86_64
- OpenOffice OpenOffice 1.1.0 .0
- OpenOffice OpenOffice 1.1.1
- OpenOffice OpenOffice 1.1.2
- OpenOffice OpenOffice 1.1.3
- OpenOffice OpenOffice 1.1.4
- OpenOffice OpenOffice 1.1.51
- OpenOffice OpenOffice 1.1.52
- OpenOffice OpenOffice 1.9.79
- OpenOffice OpenOffice 2.0.0 beta
- OpenOffice OpenOffice 2.0.1
- OpenOffice OpenOffice 2.0.2
- RedHat Desktop 3.0.0
- RedHat Desktop 4.0.0
- RedHat Enterprise Linux AS 3
- RedHat Enterprise Linux AS 4
- RedHat Enterprise Linux ES 3
- RedHat Enterprise Linux ES 4
- RedHat Enterprise Linux WS 3
- RedHat Enterprise Linux WS 4
- RedHat Fedora Core3
- S.u.S.E. Linux Desktop 1.0.0
- S.u.S.E. Linux Personal 10.0.0 OSS
- S.u.S.E. Linux Personal 10.1
- S.u.S.E. Linux Personal 9.1.0
- S.u.S.E. Linux Personal 9.1.0 x86_64
- S.u.S.E. Linux Personal 9.2.0
- S.u.S.E. Linux Personal 9.2.0 x86_64
- S.u.S.E. Linux Personal 9.3.0
- S.u.S.E. Linux Personal 9.3.0 x86_64
- S.u.S.E. Linux Professional 10.0.0
- S.u.S.E. Linux Professional 10.0.0 OSS
- S.u.S.E. Linux Professional 10.1
- S.u.S.E. Linux Professional 9.1.0
- S.u.S.E. Linux Professional 9.1.0 x86_64
- S.u.S.E. Linux Professional 9.2.0
- S.u.S.E. Linux Professional 9.2.0 x86_64
- S.u.S.E. Linux Professional 9.3.0
- S.u.S.E. Linux Professional 9.3.0 x86_64
- S.u.S.E. Novell Linux Desktop 1.0.0
- S.u.S.E. Novell Linux Desktop 9.0.0
- Sun StarOffice 6.0
- Sun StarOffice 7.0.0
- Sun StarOffice 8.0
- Sun StarSuite 8
- Turbolinux Turbolinux FUJI
- Ubuntu Ubuntu Linux 4.1.0 ia32
- Ubuntu Ubuntu Linux 4.1.0 ia64
- Ubuntu Ubuntu Linux 4.1.0 ppc
- Ubuntu Ubuntu Linux 5.0.0 4 amd64
- Ubuntu Ubuntu Linux 5.0.0 4 i386
- Ubuntu Ubuntu Linux 5.0.0 4 powerpc
- Ubuntu Ubuntu Linux 5.10.0 amd64
- Ubuntu Ubuntu Linux 5.10.0 i386
- Ubuntu Ubuntu Linux 5.10.0 powerpc
- Ubuntu Ubuntu Linux 5.10.0 sparc
- Ubuntu Ubuntu Linux 6.06 LTS amd64
- Ubuntu Ubuntu Linux 6.06 LTS i386
- Ubuntu Ubuntu Linux 6.06 LTS powerpc
- Ubuntu Ubuntu Linux 6.06 LTS sparc
- rPath rPath Linux 1
References:
- CVE: CVE-2006-3117
- NGSSoftware: NGSSoftware Advisory
- OpenOffice: File Format, CVE-2006-3117
- OpenOffice.org: Vendor Home Page
- Red Hat: RHSA-2006:0573-10 - openoffice.org security update
- Sun: Sun Alert ID: 102501 - Security Vulnerability With Malformed XML Documents in St
Juniper Networks provides this content via a wide variety of sources and production methods. If notified of errors or omissions in the content of this page, Juniper Networks, at its discretion, will modify or remove the page or leave the content as is, depending on various factors including but not limited to the reputation and authority of the party providing the notification. Please use the contact information displayed elsewhere on this page to report any errors or omissions regarding the content on this page.