Synopsis: Important: security update
Issue Date: 2012-03-22
CVE Numbers: CVE-2012-0037 is an office productivity suite that includes desktop
applications, such as a word processor, spreadsheet application,
presentation manager, formula editor, and a drawing program.
embeds a copy of Raptor, which provides parsers for Resource Description
Framework (RDF) files.

An XML External Entity expansion flaw was found in the way Raptor processed
RDF files. If were to open a specially-crafted file (such
as an OpenDocument Format or OpenDocument Presentation file), it could
possibly allow a remote attacker to obtain a copy of an arbitrary local
file that the user running had access to. A bug in the way
Raptor handled external entities could cause to crash or,
possibly, execute arbitrary code with the privileges of the user running (CVE-2012-0037)

Red Hat would like to thank Timothy D. Morgan of VSR for reporting this

All users are advised to upgrade to these updated packages,
which contain backported patches to correct this issue. All running
instances of applications must be restarted for this update
to take effect.


– Scientific Linux Development Team