libwpd: Multiple vulnerabilities — GLSA 200704-07

libwpd is vulnerable to several heap overflows and an integer overflow.

Affected packages

app-text/libwpd on all architectures
Affected versions < 0.8.9
Unaffected versions >= 0.8.9

Background

libwpd is a library used to convert Wordperfect documents into other formats.

Description

libwpd contains heap-based overflows in two functions that convert WordPerfect document tables. In addition, it contains an integer overflow in a text-conversion function.

Impact

An attacker could entice a user to convert a specially crafted WordPerfect file, resulting in a crash or possibly the execution of arbitrary code with the rights of the user running libwpd.

Workaround

There is no known workaround at this time.

Resolution

All libwpd users should upgrade to the latest version:

 # emerge --sync
 # emerge --ask --oneshot --verbose ">=app-text/libwpd-0.8.9"

References

Release date
April 06, 2007

Latest revision
April 06, 2007: 01

Severity
normal

Exploitable
remote

Bugzilla entries