mailing list archives
CVE-2012-4233: multiple null pointer dereference flaws in LibreOffice/OpenOffice.org
From: Vincent Danen <vdanen () redhat com>
Date: Thu, 1 Nov 2012 14:44:23 -0600
This one took me a bit by surprise. Debian released an advisory for OOo
and I have no record of this CVE anywhere. It looks as though it went
public yesterday, and was fixed in upstream 220.127.116.11, but it's not noted
on the LibreOffice web site at all.
Does anyone have any further details on these issues? I just filed a
bug in our bugzilla (https://bugzilla.redhat.com/show_bug.cgi?id=872350)
with the following description/references which are all I've been able
to find so far.
I'm not sure on the commit referenced as  below; that was the first
one that caught my eye, but I think it might be a red herring as it
doesn't seem to be relevant to any of the file types that are noted as
Any further information anyone has would be sincerely appreciated.
It was reported  that LibreOffice suffered from multiple NULL pointer
dereference flaws in at least version 18.104.22.168 and possibly earlier.
These flaws are reported to be corrected in 22.214.171.124 , however I am
unable to find a specific reference for this CVE on the LibreOffice
site. Debian has released an advisory for OpenOffice.org  so it
presumably affected as well.
These flaws affect ODT files, ODG files, PPT files (when handling the
PolyPolygon record within an embedded .wmf file), and XLS files.
Checking the LibreOffice git, I see two commits that may be relevant
,. However there are a lot of commits to go through between now
and the time that High-Tech Bridge indicates they reported the flaws
upstream (July 26th, 2012).
Vincent Danen / Red Hat Security Response Team
- CVE-2012-4233: multiple null pointer dereference flaws in LibreOffice/OpenOffice.org Vincent Danen (Nov 01)