Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
146377 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.122260
Categoría:Oracle Linux Local Security Checks
Título:Oracle: Security Advisory (ELSA-2011-0183)
Resumen:The remote host is missing an update for the 'openoffice.org' package(s) announced via the ELSA-2011-0183 advisory.
Descripción:Summary:
The remote host is missing an update for the 'openoffice.org' package(s) announced via the ELSA-2011-0183 advisory.

Vulnerability Insight:
[3.2.1-19.3.0.1.el6_0.5]
- Replaced RedHat colors with Oracle colors, OOO_VENDOR with Oracle Corp.,
and the filename redhat.soc with oracle.soc in specfile bug#10911

[1:3.2.1-19.6.5]
- Related: rhbz#671087 set right file permissions

[1:3.2.1-19.6.4]
- Resolves: rhbz#671087 file locks are not created with gvfs-sftp
volumes with OpenOffice.org

[1:3.2.1-19.6.3]
- Resolves: rhbz#642200 openoffice.org various flaws
- CVE-2010-4643 heap based buffer overflow when parsing TGA files

[1:3.2.1-19.6.2]
- Resolves: rhbz#642200 openoffice.org various flaws
- CVE-2010-4253 heap based buffer overflow in PPT import

[1:3.2.1-19.6.1]
- Resolves: rhbz#642200 openoffice.org various flaws
- CVE-2010-3450 directory traversal flaws in handling of XSLT jar filter
descriptions and OXT extension files
- CVE-2010-3451 Array index error by insecure parsing of broken rtf
tables
- CVE-2010-3452 Integer signedness error (crash) by processing certain
RTF tags
- CVE-2010-3453 Heap-based buffer overflow by processing *.doc files
with WW8 list styles with specially-crafted count of list levels
- CVE-2010-3454 Array index error by scanning document typography
information of certain *.doc files
- CVE-2010-3689 soffice insecure LD_LIBRARY_PATH setting

Affected Software/OS:
'openoffice.org' package(s) on Oracle Linux 6.

Solution:
Please install the updated package(s).

CVSS Score:
9.3

CVSS Vector:
AV:N/AC:M/Au:N/C:C/I:C/A:C

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2010-3450
1025002
http://www.securitytracker.com/id?1025002
40775
http://secunia.com/advisories/40775
42999
http://secunia.com/advisories/42999
43065
http://secunia.com/advisories/43065
43105
http://secunia.com/advisories/43105
43118
http://secunia.com/advisories/43118
46031
http://www.securityfocus.com/bid/46031
60799
http://secunia.com/advisories/60799
70711
http://osvdb.org/70711
ADV-2011-0230
http://www.vupen.com/english/advisories/2011/0230
ADV-2011-0232
http://www.vupen.com/english/advisories/2011/0232
ADV-2011-0279
http://www.vupen.com/english/advisories/2011/0279
DSA-2151
http://www.debian.org/security/2011/dsa-2151
GLSA-201408-19
http://www.gentoo.org/security/en/glsa/glsa-201408-19.xml
MDVSA-2011:027
http://www.mandriva.com/security/advisories?name=MDVSA-2011:027
RHSA-2011:0181
http://www.redhat.com/support/errata/RHSA-2011-0181.html
RHSA-2011:0182
http://www.redhat.com/support/errata/RHSA-2011-0182.html
USN-1056-1
http://ubuntu.com/usn/usn-1056-1
http://www.openoffice.org/security/cves/CVE-2010-3450.html
http://www.oracle.com/technetwork/topics/security/cpuapr2011-301950.html
https://bugzilla.redhat.com/show_bug.cgi?id=602324
Common Vulnerability Exposure (CVE) ID: CVE-2010-3451
70712
http://osvdb.org/70712
http://www.cs.brown.edu/people/drosenbe/research.html
http://www.openoffice.org/security/cves/CVE-2010-3451_CVE-2010-3452.html
http://www.vsecurity.com/resources/advisory/20110126-1
https://bugzilla.redhat.com/show_bug.cgi?id=641282
ooo-rtf-ce(65030)
https://exchange.xforce.ibmcloud.com/vulnerabilities/65030
Common Vulnerability Exposure (CVE) ID: CVE-2010-3452
70713
http://osvdb.org/70713
https://bugzilla.redhat.com/show_bug.cgi?id=640241
ooo-oowriter-ce(65031)
https://exchange.xforce.ibmcloud.com/vulnerabilities/65031
Common Vulnerability Exposure (CVE) ID: CVE-2010-3453
70714
http://osvdb.org/70714
http://www.openoffice.org/security/cves/CVE-2010-3453_CVE-2010-3454.html
https://bugzilla.redhat.com/show_bug.cgi?id=640950
Common Vulnerability Exposure (CVE) ID: CVE-2010-3454
70715
http://osvdb.org/70715
https://bugzilla.redhat.com/show_bug.cgi?id=640954
Common Vulnerability Exposure (CVE) ID: CVE-2010-3689
1025004
http://www.securitytracker.com/id?1025004
70716
http://osvdb.org/70716
http://www.openoffice.org/security/cves/CVE-2010-3689.html
https://bugzilla.redhat.com/show_bug.cgi?id=641224
Common Vulnerability Exposure (CVE) ID: CVE-2010-4253
70717
http://osvdb.org/70717
http://www.openoffice.org/security/cves/CVE-2010-4253.html
https://bugzilla.redhat.com/show_bug.cgi?id=658259
Common Vulnerability Exposure (CVE) ID: CVE-2010-4643
70718
http://osvdb.org/70718
http://www.openoffice.org/security/cves/CVE-2010-4643.html
https://bugzilla.redhat.com/show_bug.cgi?id=667588
ooo-tga-bo(65441)
https://exchange.xforce.ibmcloud.com/vulnerabilities/65441
CopyrightCopyright (C) 2015 Greenbone AG

Esta es sólo una de 146377 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.