Búsqueda de    
Vulnerabilidad   
    Buscar 219043 Descripciones CVE y
99761 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.841067
Categoría:Ubuntu Local Security Checks
Título:Ubuntu Update for libreoffice USN-1495-1
Resumen:Ubuntu Update for Linux kernel vulnerabilities USN-1495-1
Descripción:Summary:
Ubuntu Update for Linux kernel vulnerabilities USN-1495-1

Vulnerability Insight:
Integer overflows were discovered in the graphics loading code of several
different image types. If a user were tricked into opening a specially
crafted file, an attacker could cause LibreOffice to crash or possibly
execute arbitrary code with the privileges of the user invoking the
program. (CVE-2012-1149)

Sven Jacobi discovered an integer overflow when processing Escher graphics
records. If a user were tricked into opening a specially crafted PowerPoint
file, an attacker could cause LibreOffice to crash or possibly execute
arbitrary code with the privileges of the user invoking the program.
(CVE-2012-2334)

Affected Software/OS:
libreoffice on Ubuntu 11.10,
Ubuntu 11.04

Solution:
Please Install the Updated Packages.

CVSS Score:
7.5

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:P/A:P

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2012-1149
BugTraq ID: 53570
http://www.securityfocus.com/bid/53570
Bugtraq: 20120516 CVE-2012-1149 OpenOffice.org integer overflow error in vclmi.dll module when allocating memory for an embedded image object (Google Search)
http://archives.neohapsis.com/archives/bugtraq/2012-05/0089.html
Debian Security Information: DSA-2473 (Google Search)
http://www.debian.org/security/2012/dsa-2473
Debian Security Information: DSA-2487 (Google Search)
http://www.debian.org/security/2012/dsa-2487
http://lists.fedoraproject.org/pipermail/package-announce/2012-May/081319.html
http://lists.fedoraproject.org/pipermail/package-announce/2012-June/082168.html
http://security.gentoo.org/glsa/glsa-201209-05.xml
http://www.gentoo.org/security/en/glsa/glsa-201408-19.xml
http://www.mandriva.com/security/advisories?name=MDVSA-2012:090
http://www.mandriva.com/security/advisories?name=MDVSA-2012:091
http://www.osvdb.org/81988
RedHat Security Advisories: RHSA-2012:0705
http://rhn.redhat.com/errata/RHSA-2012-0705.html
http://securitytracker.com/id?1027068
http://secunia.com/advisories/46992
http://secunia.com/advisories/47244
http://secunia.com/advisories/49140
http://secunia.com/advisories/49373
http://secunia.com/advisories/49392
http://secunia.com/advisories/50692
http://secunia.com/advisories/60799
XForce ISS Database: openoffice-vclmi-bo(75692)
https://exchange.xforce.ibmcloud.com/vulnerabilities/75692
Common Vulnerability Exposure (CVE) ID: CVE-2012-2334
Bugtraq: 20120516 CVE-2012-2334 Vulnerabilities related to malformed Powerpoint files in OpenOffice.org 3.3.0 (Google Search)
http://archives.neohapsis.com/archives/bugtraq/2012-05/0091.html
https://bugzilla.redhat.com/show_bug.cgi?id=821803
http://www.openwall.com/lists/oss-security/2012/05/28/2
http://www.osvdb.org/82517
http://securitytracker.com/id?1027070
XForce ISS Database: openoffice-powerpoint-dos(75695)
https://exchange.xforce.ibmcloud.com/vulnerabilities/75695
CopyrightCopyright (c) 2012 Greenbone Networks GmbH

Esta es sólo una de 99761 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2024 E-Soft Inc. Todos los derechos reservados.