OpenOffice Reveals Motivation for Security Updates
Earlier than previously announced, the OpenOffice Project has released information regarding the newest security updates, spurred on due to gaps in security.
The software project team has advised users of the various release branches of versions 3 and 2 to update their software as soon as possible. More detailed information regarding these security loopholes were planned for September 11, but this info has been made public already.
The first security vulnerability (CVE-2009-0200 and CVE-2009-0201
concerns the processing of data in the format Windows meta-file (WMF). Manipulated data in graphic format could trigger heap overflows and under certain circumstances allow infiltrated code to execute under the authority of Office users. This issue was discovered by Dyon Balding from the company Secunia Research. This loophole also affects every version of Open Office 1.
The second loophole (CVE-2009-2414 and CVE-2009-2416 affects the processing of XML documents, including those in Open Document format (ODF). A targeted XML document could cause malicious code to execute.
Neither of the potential vulnerabilities have met with a real exploit of security to date. The most certain of solutions is to install either Open Office 3.1.1 or 2.4.3. which are the most current versions of the software.
Subscribe to our Linux Newsletters
Find Linux and Open Source Jobs
Subscribe to our ADMIN Newsletters
Support Our Work
Linux Magazine content is made possible with support from readers like you. Please consider contributing when you’ve found an article to be beneficial.
![Learn More](https://www.linux-magazine.com/var/linux_magazin/storage/images/media/linux-magazine-eng-us/images/misc/learn-more/834592-1-eng-US/Learn-More_medium.png)
News
-
Canonical Offers 12-Year LTS for Open Source Docker Images
Canonical is expanding its LTS offering to reach beyond the DEB packages with a new distro-less Docker image.
-
Plasma Desktop 6.1 Released with Several Enhancements
If you're a fan of Plasma Desktop, you should be excited about this new point release.
-
SUSE Offers CentOS 7 Support with Liberty Linux Lite
SUSE's Liberty Linux support offering now includes CentOS 7, which means businesses won't be forced to migrate those servers for some time.
-
Ubuntu's App Center Finally Supports Local Installs Again
If you regularly download .deb files and would prefer a GUI method of installing, Ubuntu has your back.
-
AlmaLinux Now Supports Raspberry Pi 5
If you're looking to create with the Raspberry Pi 5 and want to use AlmaLinux as your OS, you're in luck because it's now possible.
-
Kubuntu Focus Releases New Iterations of Ir14 and Ir16 Laptops
If you're a fan of the Kubuntu Focus laptops or have been waiting for the right time to purchase one, that time might be now.
-
NixOS 24.05 Is Ready for Prime Time
The latest release of NixOS (Uakari) has arrived and offers its usual reproducible, declarative, and reliable goodness.
-
Linux Lite 7.0 Officially Released
Based on Ubuntu 24.04 and kernel 6.8, Linux Lite version 7 now offers more options than ever.
-
KaOS Linux 2024.05 Adds Bcachfs Support and More
With updates all around, KaOS Linux now includes support for the bcachefs file system.
-
TUXEDO Computers Unveils New Iteration of the Stellaris Laptop Line
The Stellaris Slim 15 is the 6th generation and includes either an AMD or Intel CPU