The verification of the Stable Release Update for libreoffice has
completed successfully and the package has now been released to
-updates.  Subsequently, the Ubuntu Stable Release Updates Team is being
unsubscribed and will not receive messages about this bug report.  In
the event that you encounter a regression using the package from
-updates please report a new bug using ubuntu-bug and tag the bug report
regression-update so we can easily find any regressions.

-- 
You received this bug notification because you are a member of Desktop
Packages, which is subscribed to libreoffice in Ubuntu.
https://bugs.launchpad.net/bugs/1316243

Title:
  [SRU] Prevent DoS via OOXML

Status in “libreoffice” package in Ubuntu:
  Fix Released
Status in “libreoffice” source package in Precise:
  Fix Released

Bug description:
  LibreOffice 3.5.x allows remote attackers to cause a denial of service
  (memory corruption) or possibly have unspecified other impact via a
  crafted element in an OOXML document file.

  SRU data:

  [Impact]

   * DoS/application termination upon opening crafted file

  [Test Case]

   * none

  [Regression Potential]

   * patch affects only OOXML filters for Writer
   * change is in all upstream LibreOffice releases since 3.6.7/4.0.4, so 
regression potential is low
   * patch has been considered fine by the security team

  [Other Info]
   * none

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/libreoffice/+bug/1316243/+subscriptions

-- 
Mailing list: https://launchpad.net/~desktop-packages
Post to     : desktop-packages@lists.launchpad.net
Unsubscribe : https://launchpad.net/~desktop-packages
More help   : https://help.launchpad.net/ListHelp

Reply via email to