~ubuntu-branches/ubuntu/breezy/koffice/breezy-security

« back to all changes in this revision

Viewing changes to filters/olefilters/winword97/msword.cc

  • Committer: Bazaar Package Importer
  • Author(s): Jonathan Riddell
  • Date: 2005-10-11 14:49:50 UTC
  • mfrom: (1.1.2 upstream)
  • Revision ID: james.westby@ubuntu.com-20051011144950-lwpngbifzp8nk0ds
Tags: 1:1.4.1-0ubuntu7
* SECURITY UPDATE: fix heap based buffer overflow in the RTF importer of KWord
* Opening specially crafted RTF files in KWord can cause
  execution of abitrary code.
* Add kubuntu_01_rtfimport_heap_overflow.diff
* References:
  CAN-2005-2971
  CESA-2005-005
  http://www.koffice.org/security/advisory-20051011-1.txt

Show diffs side-by-side

added added

removed removed

Lines of Context:
1613
1613
    // The grupx reader code has to know about the alignment of the STD. We
1614
1614
    // choose to store this in a convenient field.
1615
1615
 
1616
 
    out->fScratch = ((int)in & 1);
 
1616
    out->fScratch = ((long)in & 1);
1617
1617
 
1618
1618
    // If the baseInFile is less than 10, then the style name is not stored in unicode!
1619
1619