OpenOffice 3.2 fixes several vulnerabilities
- 18 February, 2010 04:27
- Comments
The latest version of OpenOffice fixes several vulnerabilities that could cause a computer to become compromised by a remote attacker.
OpenOffice.org has issued version 3.2, which adds a lengthy list of new features and improves the suite's overall performance while also fixing six vulnerabilities.
Three of those problems could allow a remote attacker to execute code. In one of those cases, a malicious XPM file -- a type of image format supported by ODF (OpenDocument Format) -- could be maliciously crafted and allow remote user to execute other code on the computer with the same privileges as the local user.
The suite had a similar vulnerability involving the GIF image format, which has also been fixed. The third vulnerability could allow an attacker to take over a PC by getting a user to open a maliciously crafted Microsoft Word document. All three of those vulnerabilities affect all versions of OpenOffice.org prior to version 3.2.
Hackers increasingly look for these three kinds of vulnerabilities, since users can be targeted by e-mail, and various social engineering tricks can be employed to try to get them to open a document. The latest version can be downloaded from OpenOffice.org.
- Bookmark this page
- Share this article
- Got more on this story? Email Computerworld
- Follow Computerworld on twitter
- Mobile Security: Don’t leave employees to their own devices
- Endpoint Buyers Guide
- Using Application Control to Reduce Risk with Endpoint Security
- Look both ways - Protecting your data with content inspection
- IDC Case Study - EMC IT Increasing Efficiency, Reducing Costs, and Optimising IT with Data Deduplication
-
A comparison of Telstra's 4G phones
-
Drupal gains ground down under
-
NBN build gaining momentum daily: Quigley
-
Chambers: Networking's changing competitive landscape
-
The NBN, service providers and you... what could go wrong?

















Comments
Post new comment