Alligra Calligra Heap Based Buffer Overflow Vulnerability
BID:54816
Info
Alligra Calligra Heap Based Buffer Overflow Vulnerability
| Bugtraq ID: | 54816 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2012-3455 CVE-2012-3456 |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 07 2012 12:00AM |
| Updated: | Apr 13 2015 08:48PM |
| Credit: | Charlie Miller of Accuvant Labs. |
| Vulnerable: |
Ubuntu Ubuntu Linux 12.04 LTS i386 Ubuntu Ubuntu Linux 12.04 LTS amd64 Ubuntu Ubuntu Linux 11.10 i386 Ubuntu Ubuntu Linux 11.10 amd64 Ubuntu Ubuntu Linux 11.04 powerpc Ubuntu Ubuntu Linux 11.04 i386 Ubuntu Ubuntu Linux 11.04 ARM Ubuntu Ubuntu Linux 11.04 amd64 Gentoo Linux |
| Not Vulnerable: | |
Discussion
Alligra Calligra Heap Based Buffer Overflow Vulnerability
Calligra is prone to a remote buffer-overflow vulnerability.
An attacker can exploit this issue to execute arbitrary code in the context of the user running the affected application. Failed exploit attempts will likely result in denial-of-service conditions.
Calligra 2.4.3 and KOffice 2.3.3 are vulnerable; other versions may also be affected.
Calligra is prone to a remote buffer-overflow vulnerability.
An attacker can exploit this issue to execute arbitrary code in the context of the user running the affected application. Failed exploit attempts will likely result in denial-of-service conditions.
Calligra 2.4.3 and KOffice 2.3.3 are vulnerable; other versions may also be affected.
Exploit / POC
Alligra Calligra Heap Based Buffer Overflow Vulnerability
The following example data is available:
The following example data is available:
Solution / Fix
Alligra Calligra Heap Based Buffer Overflow Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
Alligra Calligra Heap Based Buffer Overflow Vulnerability
References:
References:
- Calligra Homepage (Alligra)
- Exploring the NFC Attack Surface (Charlie Miller)
- HPSBMU02873 SSRT101182 rev.1 - HP Service Manager, Apache Tomcat Security Update (HP)
- koffice Homepage (koffice)
- KDE Security Advisory: Calligra and KOffice Input Validation Failure (KDE Security Advisory)