CVE-2007-02834Manipulated TIFF files can lead to heap overflows and arbitrary code execution
1. ImpactA security vulnerability with the way OpenOffice.org processes TIFF documents may allow arbitrary command execution on the system with the privileges of the user running OpenOffice.org. We acknowledge, with thanks, an anonymous researcher working with the iDefense VCP. 2. Affected releasesAll versions prior to OpenOffice.org 2.3 3. SymptomsThere are no predictable symptoms that would indicate this issue has occurred 4. Relief/WorkaroundThere is no workaround. See "Resolution" below. 5. ResolutionThis issue is addressed in the following releases: OpenOffice.org 2.3 |

