Candidate: CVE-2009-0259 PublicDate: 2009-01-22 23:30:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0259 Description: The Word processor in OpenOffice.org 1.1.2 through 1.1.5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted (1) .doc, (2) .wri, or (3) .rtf Word 97 file that triggers memory corruption, as exploited in the wild in December 2008, as demonstrated by 2008-crash.doc.rar, and a similar issue to CVE-2008-4841. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: Patches_openoffice.org: upstream_openoffice.org: needs-triage dapper_openoffice.org: not-affected (2.0.2-2ubuntu12) gutsy_openoffice.org: not-affected hardy_openoffice.org: not-affected intrepid_openoffice.org: not-affected devel_openoffice.org: not-affected