imPC@ndo IT

Tracker / CVE-2010-0395

CVE-2010-0395

High 9.3

OpenOffice.org 2.x and 3.0 before 3.2.1 allows user-assisted remote attackers to bypass Python macro security restrictions and execute arbitrary Python code via a crafted OpenDocument Text (ODT) file that triggers code execution when the macro directory structure is previewed.

Affected products and versions

apache openoffice · 2.0.0 → 3.2.1
canonical ubuntu_linux
debian debian_linux
fedoraproject fedora
opensuse opensuse
suse linux_enterprise_desktop

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References