Summary
Ubuntu Update for Linux kernel vulnerabilities USN-609-1
Solution
Please Install the Updated Packages.
Insight
It was discovered that arbitrary Java methods were not filtered out when opening databases in OpenOffice.org. If a user were tricked into running a specially crafted query, a remote attacker could execute arbitrary Java with user privileges. (CVE-2007-4575)
Multiple memory overflow flaws were discovered in OpenOffice.org's handling of Quattro Pro, EMF, and OLE files. If a user were tricked into opening a specially crafted document, a remote attacker might be able to execute arbitrary code with user privileges. (CVE-2007-5745, CVE-2007-5746, CVE-2007-5747, CVE-2008-0320)
Affected
hsqldb, openoffice.org/-amd64 vulnerabilities on Ubuntu 6.06 LTS , Ubuntu 7.04 ,
Ubuntu 7.10
Severity
Classification
-
CVE CVE-2007-4575, CVE-2007-5745, CVE-2007-5746, CVE-2007-5747, CVE-2008-0320 -
CVSS Base Score: 9.3
AV:N/AC:M/Au:N/C:C/I:C/A:C
Related Vulnerabilities