USN-388-1: KOffice vulnerability

Ubuntu Security Notice USN-388-1

29th November, 2006

koffice vulnerability

A security issue affects these releases of Ubuntu and its derivatives:

  • Ubuntu 5.10

Details

An integer overflow was discovered in KOffice's filtering code. By
tricking a user into opening a specially crafted PPT file, attackers
could crash KOffice or possibly execute arbitrary code with the user's
privileges.

Update instructions

The problem can be corrected by updating your system to the following package version:

Ubuntu 5.10:
koffice-libs 1:1.4.1-0ubuntu7.4

To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades.

After a standard system upgrade you need to restart your Desktop session
to effect the necessary changes.

References

CVE-2006-6120