Security Vulnerability in StarOffice 8 May Lead to Heap Overflow and Arbitrary Code Execution



Category :Security
Release Phase :Resolved
Product :StarOffice 8 Software  
Bug Id :6520258  
Date of Workaround Release :10-APR-2007 
Date of Resolved Release :17-MAY-2007 


Impact

Due to a security vulnerability in StarOffice/StarSuite 8, manipulated WordPerfect files, which may have been provided by a local or remote untrusted user, may lead to heap overflow and arbitrary code execution.

This issue is described in the following documents:


Contributing Factors

This issue can occur in the following releases:

SPARC Platform

x86 Platform

Linux Platform

Windows Platform

Note: StarOffice/StarSuite versions 6.0 and 7 are not impacted by this issue.

To determine the version of StarOffice installed on a system, the following command can be run (for /<staroffice program dir>/program/bootstraprc):

    % cat bootstraprc | grep Product
    ProductKey=StarOffice 8
    ProductPatch=(Product Update 2)

On the Windows platform, using the GUI, do the following (with StarOffice/StarSuite open):

  1. Open the "Help" menu
  2. Choose "About StarOffice" (StarSuite)

The version is displayed first in the "about" text.


Symptoms

There are no predictable symptoms that would indicate the described issue has occurred.


Workaround

To work around the described issue, only load WordPerfect files from known sources.


Resolution

This issue is addressed in the following releases:

SPARC Platform

x86 Platform

Linux Platform

Windows Platform




Modification History


Date: 17-MAY-2007
  • State: Resolved
  • Updated Contributing Factors and Resolution sections



Attachments
This solution has no attachment

 
 
Login Required

You must login and have a valid contract to access Sun's Premium content which includes:

  • Sun Alerts
  • Bugs
  • Patches
  • Solutions
  • White Papers
  • Documentation
  • Support Knowledge

Login Required

You must login and have a valid contract to access Sun's contracted features

Access Legend:

(Login to access)   Sun Contracted Content
(Login to access)   Sun Contracted Feature

Please make use of SunSolve Feedback application by selecting the floating [+] to provide feedback about this specific document.

Search

Article Details
Article ID : 200838
Article Type : Sun Alert
Last reviewed : 2007-09-26
Audience : PUBLIC
Keywords :
Provide feedback  (help)
Page Tools
»  Print This Page
»  Email This Article
»  Bookmark This Article
 
Contact About Sun News & Events Employment Site Map Privacy Terms of Use Trademarks Copyright Sun Microsystems, Inc. | SunSolve Version 7.4.0 #1