Scientific Linux 安全更新:SL5.x i386/x86_64 中的 openoffice.org

high Nessus 插件 ID 61410

简介

远程 Scientific Linux 主机缺少一个或多个安全更新。

描述

OpenOffice.org 是办公应用套件,它包括许多桌面应用程序,例如文字处理器、电子表格应用程序、演示文稿管理器、公式编辑器和绘图程序。

在 OpenOffice.org 处理 OpenDocument 格式文件的清单文件中的加密信息的方式中,发现多种基于堆的缓冲区溢出缺陷。攻击者可提供特别构建的 OpenDocument 格式文件,在 OpenOffice.org 应用程序中打开该文件时,将导致该应用程序崩溃,或可能以运行该应用程序的用户权限执行任意代码。(CVE-2012-2665)

建议所有 OpenOffice.org 用户升级这些更新后的程序包,其中包含用于修正这些问题的向后移植的修补程序。
必须重新启动所有正在运行的 OpenOffice.org 应用程序实例,才能使更新生效。

解决方案

更新受影响的程序包。

另见

http://www.nessus.org/u?0efbf5a4

插件详情

严重性: High

ID: 61410

文件名: sl_20120801_openoffice_org_on_SL5_x.nasl

版本: 1.7

类型: local

代理: unix

发布时间: 2012/8/3

最近更新时间: 2021/1/14

支持的传感器: Nessus Agent, Nessus

风险信息

VPR

风险因素: Medium

分数: 5.9

CVSS v2

风险因素: High

基本分数: 7.5

矢量: CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P

漏洞信息

CPE: p-cpe:/a:fermilab:scientific_linux:openoffice.org-base, p-cpe:/a:fermilab:scientific_linux:openoffice.org-calc, p-cpe:/a:fermilab:scientific_linux:openoffice.org-core, p-cpe:/a:fermilab:scientific_linux:openoffice.org-debuginfo, p-cpe:/a:fermilab:scientific_linux:openoffice.org-draw, p-cpe:/a:fermilab:scientific_linux:openoffice.org-emailmerge, p-cpe:/a:fermilab:scientific_linux:openoffice.org-graphicfilter, p-cpe:/a:fermilab:scientific_linux:openoffice.org-headless, p-cpe:/a:fermilab:scientific_linux:openoffice.org-impress, p-cpe:/a:fermilab:scientific_linux:openoffice.org-javafilter, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-af_za, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-ar, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-as_in, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-bg_bg, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-bn, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-ca_es, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-cs_cz, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-cy_gb, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-da_dk, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-de, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-el_gr, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-es, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-et_ee, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-eu_es, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-fi_fi, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-fr, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-ga_ie, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-gl_es, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-gu_in, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-he_il, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-hi_in, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-hr_hr, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-hu_hu, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-it, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-ja_jp, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-kn_in, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-ko_kr, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-lt_lt, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-ml_in, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-mr_in, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-ms_my, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-nb_no, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-nl, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-nn_no, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-nr_za, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-nso_za, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-or_in, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-pa_in, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-pl_pl, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-pt_br, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-pt_pt, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-ru, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-sk_sk, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-sl_si, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-sr_cs, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-ss_za, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-st_za, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-sv, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-ta_in, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-te_in, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-th_th, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-tn_za, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-tr_tr, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-ts_za, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-ur, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-ve_za, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-xh_za, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-zh_cn, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-zh_tw, p-cpe:/a:fermilab:scientific_linux:openoffice.org-langpack-zu_za, p-cpe:/a:fermilab:scientific_linux:openoffice.org-math, p-cpe:/a:fermilab:scientific_linux:openoffice.org-pyuno, p-cpe:/a:fermilab:scientific_linux:openoffice.org-sdk, p-cpe:/a:fermilab:scientific_linux:openoffice.org-sdk-doc, p-cpe:/a:fermilab:scientific_linux:openoffice.org-testtools, p-cpe:/a:fermilab:scientific_linux:openoffice.org-ure, p-cpe:/a:fermilab:scientific_linux:openoffice.org-writer, p-cpe:/a:fermilab:scientific_linux:openoffice.org-xsltfilter, x-cpe:/o:fermilab:scientific_linux

必需的 KB 项: Host/local_checks_enabled, Host/RedHat/release, Host/RedHat/rpm-list, Host/cpu

补丁发布日期: 2012/8/1

漏洞发布日期: 2012/8/6

参考资料信息

CVE: CVE-2012-2665