Required CVE Record Information
Description
Multiple heap-based buffer overflows in cppcanvas/source/mtfrenderer/emfplus.cxx in Go-oo 2.x and 3.x before 3.0.1, previously named ooo-build and related to OpenOffice.org (OOo), allow remote attackers to execute arbitrary code via a crafted EMF+ file, a similar issue to CVE-2008-2238.
References 7 Total
- mandriva.com: MDVSA-2010:105 vendor-advisory
- mandriva.com: MDVSA-2010:091 vendor-advisory
- http://cgit.freedesktop.org/ooo-build/ooo-build/commit/?id=49b4e38571912a7d28c4044e5b2bd57e51c77d55
- mandriva.com: MDVSA-2010:035 vendor-advisory
- marc.info: [oss-security] 20090922 Re: [oss-security] OpenOffice.org CVE-2009-2139 mailing-list
- marc.info: [oss-security] 20090910 Re: OpenOffice.org CVE-2009-2139 mailing-list
- marc.info: [oss-security] 20090911 Re: OpenOffice.org CVE-2009-2139 mailing-list
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 7 Total
- mandriva.com: MDVSA-2010:105 vendor-advisoryx_transferred
- mandriva.com: MDVSA-2010:091 vendor-advisoryx_transferred
- http://cgit.freedesktop.org/ooo-build/ooo-build/commit/?id=49b4e38571912a7d28c4044e5b2bd57e51c77d55 x_transferred
- mandriva.com: MDVSA-2010:035 vendor-advisoryx_transferred
- marc.info: [oss-security] 20090922 Re: [oss-security] OpenOffice.org CVE-2009-2139 mailing-listx_transferred
- marc.info: [oss-security] 20090910 Re: OpenOffice.org CVE-2009-2139 mailing-listx_transferred
- marc.info: [oss-security] 20090911 Re: OpenOffice.org CVE-2009-2139 mailing-listx_transferred