USN-203-1: Abiword vulnerabilities

Ubuntu Security Notice USN-203-1

13th October, 2005

abiword vulnerabilities

A security issue affects these releases of Ubuntu and its derivatives:

  • Ubuntu 5.04
  • Ubuntu 4.10

Details

Chris Evans discovered several buffer overflows in the RTF import
module of AbiWord. By tricking a user into opening an RTF file with
specially crafted long identifiers, an attacker could exploit this to
execute arbitrary code with the privileges of the AbiWord user.

Update instructions

The problem can be corrected by updating your system to the following package version:

Ubuntu 5.04:
abiword
Ubuntu 4.10:
abiword

To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades.

None

References

CVE-2005-2972