CVE-2013-2189

Naslov: CVE-2013-2189: Ranljivost okvarjenega pomnilnika pri Microsoft .doc

Objavljeno: 26. julij 2013

Popravljeno v: LibreOffice 3.4.3

Izvirni opis:
Prior to version 3.4.3 a vulnerability exists where parsing a malformed Microsoft .doc file can operate on invalid PLCF (Plex of Character Positions in File) data. Users should already have upgraded to versions >= 3.4.3 due to earlier advisories.

Thanks to Jeremy Brown of Microsoft Vulnerability Research for reporting this flaw.

Viri:

PRE-CERT