Computer Security
[EN] securityvulns.ru
no-pyccku



hsqldb / OpenOffice code execution
Published:05.12.2007
Source:BUGTRAQ
SecurityVulns ID:8406
Type:client
Level:6/10
Description:It's possible to execute Java code embedded to OpenOffice database document.
Affected:HSQLDB : hsqldb 1.8
 OPENOFFICE : OpenOffice 2.3
CVE:CVE-2007-4575 (HSQLDB before 1.8.0.9, as used in OpenOffice.org (OOo) 2 before 2.3.1, allows user-assisted remote attackers to execute arbitrary Java code via crafted database documents, related to "exposing static java methods.")
Original documentdocumentDEBIAN, [SECURITY] [DSA 1419-1] New OpenOffice.org packages fix arbitrary Java code execution (05.12.2007)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru