JA/SecurityFAQ

From Apache OpenOffice Wiki
< JA
Revision as of 20:18, 10 June 2009 by Foral (Talk | contribs)

Jump to: navigation, search
OOo Security Team

Pages:


Security Project Home
Security Team Home

Frequently Asked Questions

よくある質問

Is OpenOffice.org secure?

OpenOffice.orgはセキュアですか?

The OpenOffice.org engineers take the security of the software very seriously. We take great care to ensure that our software is secure, and we will react promptly to any reports of suspected security vulnerabilities in our software.

OpenOffice.org技術者は非常に真剣にソフトウェアのセキュリティを受け止めています。 私たちは、私たちのソフトウェアが確実に安全にするため、非常に注意を払っています。 そして、私たちはどんな脆弱性に関する疑惑報告にも即座に反応します。


How do I know my copy of OpenOffice.org is genuine?

私のOpenOffice.orgが本物かどうすればわかりますか?

Make sure you know where your copy of OpenOffice.org has come from. OpenOffice.orgをどこから取得した必ず確認してください。 Download from one of the sites listed in http://download.openoffice.org, or purchase from one of our CD distributors.Use a checksum to make sure your copy has not been corrupted before you install it.

このダウンロード一覧のサイトhttp://download.openoffice.orgか、CDディストリビュータから購入したものか。 チェックサムを使って インストールをする前に、データが破損していないか確認してください。

How do I protect my copy of OpenOffice.org against security issues?

私はOpenOffice.orgのセキュリティ問題を防ぐために何ができますか?

We recommend all users install new versions of OpenOffice.org as soon as practical after they are released. Since version 2.1, OpenOffice.org has included a feature which will tell you if a new version is available. We recommend you switch this on

(Tools -> Options -> Online Update -> Check for updates automatically):

OpenOffice.orgがリリースされて直ぐに新バージョンをインストールすることを推奨します。バージョン2.1以来、OpenOffice.orgは新バージョンが利用可能であるかt通知する機能があります。機能を有効にすることをお勧めします。

(ツール -> オプション -> オンライン更新 -> 自動的に更新をチェック(C)):

Screen1.png

How do I stop viruses attacking my copy of OpenOffice.org?

OpenOffice.orgへのウィルス攻撃を予防するためには、何ができますか?

If your computer becomes infected with a virus, it is possible that any program you have installed including OpenOffice.org - may become corrupted. Your computer cannot catch a virus from fresh air. It can become infected if someone gives you any kind of media floppy disk, CD, DVD, memory stick, memory card etc.anything capable of holding data can also hold a virus. It can become infected if it is connected to any kind of network, including wireless. Connections to publicly accessible networks like the internet are particularly risky.

There are a whole range of things you can do to protect your computer firewalls, anti-virus software, etc please contact your PC supplier or IT department for details. If you suspect your PC has been infected, please seek specialist support.

もし、コンピュータがウィルスに感染した場合OpenOffice.orgを含む、すべてのインストールしたプログラムが破損している可能性があります。コンピュータは、空気からは感染できません。何らかのメディア(フロッピー、CD、DVD、メモリースティック、メモリーカードなど)から感染することがあります。

データが保持できる物は、いずれもウィルスを保持できます。ワイヤレスを含むどんな種類のネットワーク接続からも、感染ことがあります。インターネットのような公共ネットワークへの接続は特に危険です。

あなたのできることは、コンピュータファイアウォール、ウイルス除去ソフトなどすべての範囲が考えられます。 PC購入元やIT部門に連絡をしてみてください。また、PCへの感染が疑われる場合は、専門家サポートを求めてください。

How do I protect against macro-viruses in OpenOffice.org?

マクロウィルスから保護するには私は何ができますか?

Macros are a useful part of any office suite, allowing you to automate repetitive tasks. A macro can do anything you can do - including potentially destructive actions such as modifying and deleting files. A macro can attached to any OpenOffice.org file (document, spreadsheet, etc.).

Whenever OpenOffice.org detects macros in a document being opened, by default it displays a warning and will only run the macro if the you specifically agree.

The safest rule is you should never open any OpenOffice.org file unless you are sure where it has come from and trust the sender. Note that it is very easy to falsify an email address - if you have any doubt, do not open the document until you have proved its identity. If you need to exchange documents regularly, we recommend the use of digital signatures to certify the origin of the document.

I am a developer - how do I report a security vulnerability in OpenOffice.org?

私は開発者です。OpenOffice.org内の脆弱性をどの様に報告すればよいですか?

Please report any suspected vulnerabilities to our Security Team. We appreciate early confidential disclosure to give vendors of products and solutions based on OpenOffice.org time to react. We will coordinate the disclosure of your report with you.

In your report, please include the following information: あなたのレポートに下記の情報を入れてください。

  • In which version of OpenOffice.org did you identify the problem (e.g. 1.1.5, 2.0.2, etc.)?
  • どのOpenOffice.orgのバージョンで確認したのか(例: 1.1.5, 2.0.2, など.)?
  • Do you have an official version of OpenOffice.org or e.g. a build from your GNU/Linux distribution (include the URL of the build if possible)?
  •  オフィシャルバージョンのOpenOffice.orgなのか。例えば、GNU/Linuxディストリビューションからビルドしたものか。(可能ならば、ビルドのURLも)
  • What is the impact of the problem (data loss, denial of service, executing commands, etc.)?
  • How can the problem be reproduced?
  • Is there an existing exploit?
  • Has the problem already been published?

After we receive your report, we will work on the evaluation and we will reply to you (typically in the next business day).

Where can I find a list of all the security vulnerabilities fixed in OpenOffice.org?

These are listed in our Security Bulletin

"The publisher of this software cannot be verified" - what should I do?

When installing OpenOffice.org under Microsoft Windows, you may see a warning message stating that the publisher of the software could not be verified. It is safe to ignore this message if you are confident that your copy of OpenOffice.org came from a reputable source. If you have any doubts about this, you can check that the file has not been tampered with by using MD5 checksums.

Personal tools