RE: [REPORT] CVE-2016-1513 Security Advisory

classic Classic list List threaded Threaded
1 message Options
Reply | Threaded
Open this post in threaded view
|

RE: [REPORT] CVE-2016-1513 Security Advisory

Dennis E. Hamilton-2
[BCC PMC]

Today, Version 2.0 of the Advisory for CVE-2016-1513 has been issued.

There is now general availability of a Hotfix that can be downloaded and applied to installations of Apache OpenOffice 4.1.2.  The Hotfix details can be found at
<http://archive.apache.org/dist/openoffice/4.1.2-patch1/hotfix.html>.

Please review the README instructions before deciding to download and apply the Hotfix.

 - Dennis

> -----Original Message-----
> From: Dennis E. Hamilton [mailto:[hidden email]]
> Sent: Thursday, July 21, 2016 09:43
> To: [hidden email]
> Subject: [REPORT] CVE-2016-1513 Security Advisory
>
> [BCC AOO Users; BCC AOO PMC]
>
> Today, advisory CVE-2016-1513 has been published with regard to
> disclosure of a potentially-exploitable defect in crafted Impress
> documents.  The advisory can be found at
> <http://www.openoffice.org/security/cves/CVE-2016-1513.html>.
>
> There is no updated release at this time.  There is action underway.  We
> can now discuss those actions and also seek assistance in the wider
> community.
>
[ ... ]