Summary
Ubuntu Update for Linux kernel vulnerabilities USN-1495-1
Solution
Please Install the Updated Packages.
Insight
Integer overflows were discovered in the graphics loading code of several different image types. If a user were tricked into opening a specially crafted file, an attacker could cause LibreOffice to crash or possibly execute arbitrary code with the privileges of the user invoking the program. (CVE-2012-1149)
Sven Jacobi discovered an integer overflow when processing Escher graphics records. If a user were tricked into opening a specially crafted PowerPoint file, an attacker could cause LibreOffice to crash or possibly execute arbitrary code with the privileges of the user invoking the program.
(CVE-2012-2334)
Affected
libreoffice on Ubuntu 11.10 ,
Ubuntu 11.04
Severity
Classification
-
CVE CVE-2012-1149, CVE-2012-2334 -
CVSS Base Score: 7.5
AV:N/AC:L/Au:N/C:P/I:P/A:P
Related Vulnerabilities