A 'highly critical' flaw has been discovered in the OpenOffice suite of products that could allow hackers to access a user's system.
The vulnerability is caused by integer overflows when processing certain tags within Tiff images.
Problems dealing with Tiff images could allow remote access
vnunet.com, 18 Sep 2007
A 'highly critical' flaw has been discovered in the OpenOffice suite of products that could allow hackers to access a user's system.
The vulnerability is caused by integer overflows when processing certain tags within Tiff images.
This problem could be exploited to cause heap-based buffer overflows, possibly by tricking a user into opening a specially crafted document.
Successful exploitation could allow the execution of arbitrary code and compromise a user's system, according to Secunia, which rated the vulnerability as 'highly critical'.
The vulnerabilities are reported in versions earlier than OpenOffice 2.3 and the problem can be fixed by upgrading to the latest version of the software.
Red Hat has updated its OpenOffice packages to correct the security issue in Red Hat Enterprise Linux versions 3, 4 and 5.
OpenOffice is a free office productivity suite that includes a word processor, spreadsheet, presentation manager, formula editor and drawing program.

Vista and XP spared from most dangerous vulnerabilities

Software exposes users to remote code execution vulnerability
Vulnerability puts users at risk of arbitrary code execution
Similar issues in Cisco and Checkpoint products, NTA Monitor warns

Have you got a burning desire to quiz experts from...

Figleaves founder argues platform-as-a-service vendor will emerge to shake up...
Do you agree?
Have your say on this article