Upstream information

CVE-2008-2238 at MITRE

Description

Multiple integer overflows in OpenOffice.org (OOo) 2.x before 2.4.2 allow remote attackers to execute arbitrary code via crafted EMR records in an EMF file associated with a StarOffice/StarSuite document, which trigger a heap-based buffer overflow.

SUSE information

Overall state of this security issue: Resolved

This issue is currently rated as having critical severity.

CVSS v2 Scores
  National Vulnerability Database
Base Score 9.3
Vector AV:N/AC:M/Au:N/C:C/I:C/A:C
Access Vector Network
Access Complexity Medium
Authentication None
Confidentiality Impact Complete
Integrity Impact Complete
Availability Impact Complete
SUSE Bugzilla entries: 437304 [RESOLVED / FIXED], 437666 [RESOLVED / FIXED]

SUSE Security Advisories:

List of released packages

Product(s) Fixed package version(s) References
openSUSE 11.0
  • OpenOffice_org-debuginfo >= 2.4.0.14-1.2
  • OpenOffice_org-debugsource >= 2.4.0.14-1.2
openSUSE 11.0
  • OpenOffice_org >= 2.4.0.14-1.2
  • OpenOffice_org-af >= 2.4.0.14-1.2
  • OpenOffice_org-ar >= 2.4.0.14-1.2
  • OpenOffice_org-base >= 2.4.0.14-1.2
  • OpenOffice_org-be-BY >= 2.4.0.14-1.2
  • OpenOffice_org-bg >= 2.4.0.14-1.2
  • OpenOffice_org-branding-upstream >= 2.4.0.14-1.2
  • OpenOffice_org-ca >= 2.4.0.14-1.2
  • OpenOffice_org-calc >= 2.4.0.14-1.2
  • OpenOffice_org-cs >= 2.4.0.14-1.2
  • OpenOffice_org-cy >= 2.4.0.14-1.2
  • OpenOffice_org-da >= 2.4.0.14-1.2
  • OpenOffice_org-de >= 2.4.0.14-1.2
  • OpenOffice_org-devel >= 2.4.0.14-1.2
  • OpenOffice_org-draw >= 2.4.0.14-1.2
  • OpenOffice_org-el >= 2.4.0.14-1.2
  • OpenOffice_org-en-GB >= 2.4.0.14-1.2
  • OpenOffice_org-es >= 2.4.0.14-1.2
  • OpenOffice_org-et >= 2.4.0.14-1.2
  • OpenOffice_org-fi >= 2.4.0.14-1.2
  • OpenOffice_org-filters >= 2.4.0.14-1.2
  • OpenOffice_org-fr >= 2.4.0.14-1.2
  • OpenOffice_org-gnome >= 2.4.0.14-1.2
  • OpenOffice_org-gu-IN >= 2.4.0.14-1.2
  • OpenOffice_org-hi-IN >= 2.4.0.14-1.2
  • OpenOffice_org-hr >= 2.4.0.14-1.2
  • OpenOffice_org-hu >= 2.4.0.14-1.2
  • OpenOffice_org-icon-themes-prebuilt >= 2.4.0.14-1.2
  • OpenOffice_org-impress >= 2.4.0.14-1.2
  • OpenOffice_org-it >= 2.4.0.14-1.2
  • OpenOffice_org-ja >= 2.4.0.14-1.2
  • OpenOffice_org-kde >= 2.4.0.14-1.2
  • OpenOffice_org-km >= 2.4.0.14-1.2
  • OpenOffice_org-ko >= 2.4.0.14-1.2
  • OpenOffice_org-lt >= 2.4.0.14-1.2
  • OpenOffice_org-mailmerge >= 2.4.0.14-1.2
  • OpenOffice_org-math >= 2.4.0.14-1.2
  • OpenOffice_org-mk >= 2.4.0.14-1.2
  • OpenOffice_org-mono >= 2.4.0.14-1.2
  • OpenOffice_org-nb >= 2.4.0.14-1.2
  • OpenOffice_org-nl >= 2.4.0.14-1.2
  • OpenOffice_org-nn >= 2.4.0.14-1.2
  • OpenOffice_org-officebean >= 2.4.0.14-1.2
  • OpenOffice_org-pa-IN >= 2.4.0.14-1.2
  • OpenOffice_org-pl >= 2.4.0.14-1.2
  • OpenOffice_org-pt >= 2.4.0.14-1.2
  • OpenOffice_org-pt-BR >= 2.4.0.14-1.2
  • OpenOffice_org-pyuno >= 2.4.0.14-1.2
  • OpenOffice_org-ru >= 2.4.0.14-1.2
  • OpenOffice_org-rw >= 2.4.0.14-1.2
  • OpenOffice_org-sdk >= 2.4.0.14-1.2
  • OpenOffice_org-sdk-doc >= 2.4.0.14-1.2
  • OpenOffice_org-sk >= 2.4.0.14-1.2
  • OpenOffice_org-sl >= 2.4.0.14-1.2
  • OpenOffice_org-sr-CS >= 2.4.0.14-1.2
  • OpenOffice_org-st >= 2.4.0.14-1.2
  • OpenOffice_org-sv >= 2.4.0.14-1.2
  • OpenOffice_org-testtool >= 2.4.0.14-1.2
  • OpenOffice_org-tr >= 2.4.0.14-1.2
  • OpenOffice_org-ts >= 2.4.0.14-1.2
  • OpenOffice_org-vi >= 2.4.0.14-1.2
  • OpenOffice_org-writer >= 2.4.0.14-1.2
  • OpenOffice_org-xh >= 2.4.0.14-1.2
  • OpenOffice_org-zh-CN >= 2.4.0.14-1.2
  • OpenOffice_org-zh-TW >= 2.4.0.14-1.2
  • OpenOffice_org-zu >= 2.4.0.14-1.2
Novell Linux Desktop 9 for x86
Novell Linux Desktop 9 for x86_64
  • OpenOffice_org >= 1.1.5-0.24
  • OpenOffice_org-ar >= 1.1.5-0.24
  • OpenOffice_org-ca >= 1.1.5-0.24
  • OpenOffice_org-cs >= 1.1.5-0.24
  • OpenOffice_org-da >= 1.1.5-0.24
  • OpenOffice_org-de >= 1.1.5-0.24
  • OpenOffice_org-el >= 1.1.5-0.24
  • OpenOffice_org-en >= 1.1.5-0.24
  • OpenOffice_org-en-help >= 1.1.5-0.24
  • OpenOffice_org-es >= 1.1.5-0.24
  • OpenOffice_org-et >= 1.1.5-0.24
  • OpenOffice_org-fi >= 1.1.5-0.24
  • OpenOffice_org-fr >= 1.1.5-0.24
  • OpenOffice_org-gnome >= 1.1.5-0.24
  • OpenOffice_org-hu >= 1.1.5-0.24
  • OpenOffice_org-it >= 1.1.5-0.24
  • OpenOffice_org-ja >= 1.1.5-0.24
  • OpenOffice_org-kde >= 1.1.5-0.24
  • OpenOffice_org-ko >= 1.1.5-0.24
  • OpenOffice_org-nl >= 1.1.5-0.24
  • OpenOffice_org-pl >= 1.1.5-0.24
  • OpenOffice_org-pt >= 1.1.5-0.24
  • OpenOffice_org-pt-BR >= 1.1.5-0.24
  • OpenOffice_org-ru >= 1.1.5-0.24
  • OpenOffice_org-sk >= 1.1.5-0.24
  • OpenOffice_org-sl >= 1.1.5-0.24
  • OpenOffice_org-sv >= 1.1.5-0.24
  • OpenOffice_org-tr >= 1.1.5-0.24
  • OpenOffice_org-zh-CN >= 1.1.5-0.24
  • OpenOffice_org-zh-TW >= 1.1.5-0.24
sles9-nld.x86-64
sle10-sp1-sdk.x86-64
sles9-nld.x86
sled10.x86
sle10-sp1-sdk.x86
sled10.x86-64
ZYPP Patch Nr: 5740