Issue 127873

Summary: fix bugs in group shape handling in Microsoft Office Drawing Binary File Format data streams
Product: General Reporter: Don Lewis <truckman>
Component: codeAssignee: AOO issues mailing list <issues>
Status: CLOSED FIXED QA Contact:
Severity: Normal    
Priority: P5 (lowest) CC: knmc, mseidel, petko
Version: 4.1.6-devFlags: petko: 4.1.6_release_blocker+
Target Milestone: 4.1.6   
Hardware: All   
OS: All   
Issue Type: PATCH Latest Confirmation in: ---
Developer Difficulty: ---

Description Don Lewis 2018-09-01 18:35:57 UTC
This trunk commit should be merged to AOO416 to fix bugs in the handling of Microsoft Office Drawing Binary File Format data streams that can cause OpenOffice to crash:
  https://svn.apache.org/viewvc?view=revision&revision=1838291

In the top level directory of AOO416:
  svn merge -c 1838291 '^/openoffice/trunk' .

Fix tested in 4.1.6 on 32-bit Windows 7 and CentOS 6 x86_64.
Comment 1 Peter 2018-09-16 09:23:38 UTC
Accepted for 4.1.6
Comment 2 SVN Robot 2018-10-07 12:29:55 UTC
"mseidel" committed SVN revision 1843062 into branches/AOO416:
i127873 - Merge r1838291 from trunk
Comment 3 Matthias Seidel 2018-10-07 21:42:55 UTC
Fix confirmed in r1843062 on Windows 7 (32-bit).
Comment 4 Keith N. McKenna 2018-10-31 17:32:53 UTC
Are there test documents that can be used to verify this fix available?
Comment 5 Don Lewis 2018-11-01 03:37:18 UTC
1.xls from 20151230-CodeSafeA-XLS-Exploit in the security archive.