Alligra Calligra Heap Based Buffer Overflow Vulnerability
14 Aug. 2012
Summary
Calligra is prone to a remote buffer-overflow vulnerability.
Credit:
The original article can be found at: http://www.securityfocus.com/bid/54816
The information has been provided by Charlie Miller of Accuvant Labs. .
Vulnerable Systems:
*Alligra Calligra Heap Based Buffer Overflow Vulnerability
An attacker can exploit this issue to execute arbitrary code in the context of the user running the affected application. Failed exploit attempts will likely result in denial-of-service conditions.Calligra 2.4.3 and KOffice 2.3.3 are vulnerable; other versions may also be affected.
Vendor Status:
Vendor as issued an updated vulnerability.