You are here
Home > Preporuke > Sigurnosni nedostaci programskog paketa LibreOffice

Sigurnosni nedostaci programskog paketa LibreOffice

  • Detalji os-a: WN7
  • Važnost: IMP
  • Operativni sustavi: L
  • Kategorije: LGE

– – – – – – – – – – – – – – – – – – – – – – – – – – – – – – – – – – – –
Gentoo Linux Security Advisory GLSA 201908-13
– – – – – – – – – – – – – – – – – – – – – – – – – – – – – – – – – – – –
https://security.gentoo.org/
– – – – – – – – – – – – – – – – – – – – – – – – – – – – – – – – – – – –

Severity: High
Title: LibreOffice: Multiple vulnerabilities
Date: August 15, 2019
Bugs: #690354
ID: 201908-13

– – – – – – – – – – – – – – – – – – – – – – – – – – – – – – – – – – – –

Synopsis
========

Multiple vulnerabilities have been found in LibreOffice, the worst of
which could result in the arbitrary execution of code.

Background
==========

LibreOffice is a powerful office suite; its clean interface and
powerful tools let you unleash your creativity and grow your
productivity.

Affected packages
=================

——————————————————————-
Package / Vulnerable / Unaffected
——————————————————————-
1 app-office/libreoffice < 6.2.5.2 >= 6.2.5.2
2 app-office/libreoffice-bin
< 6.2.5.2 >= 6.2.5.2
——————————————————————-
2 affected packages

Description
===========

Multiple vulnerabilities have been discovered in LibreOffice. Please
review the CVE identifiers referenced below for details.

Impact
======

Please review the referenced CVE identifiers for details.

Workaround
==========

There is no known workaround at this time.

Resolution
==========

All LibreOffice users should upgrade to the latest version:

# emerge –sync
# emerge –ask –oneshot –verbose “>=app-office/libreoffice-6.2.5.2”

All LibreOffice binary users should upgrade to the latest version:

# emerge –sync
# emerge –ask –oneshot -v “>=app-office/libreoffice-bin-6.2.5.2”

References
==========

[ 1 ] CVE-2019-9848
https://nvd.nist.gov/vuln/detail/CVE-2019-9848
[ 2 ] CVE-2019-9849
https://nvd.nist.gov/vuln/detail/CVE-2019-9849

Availability
============

This GLSA and any updates to it are available for viewing at
the Gentoo Security Website:

https://security.gentoo.org/glsa/201908-13

Concerns?
=========

Security is a primary focus of Gentoo Linux and ensuring the
confidentiality and security of our users’ machines is of utmost
importance to us. Any security concerns should be addressed to
security@gentoo.org or alternatively, you may file a bug at
https://bugs.gentoo.org.

License
=======

Copyright 2019 Gentoo Foundation, Inc; referenced text
belongs to its owner(s).

The contents of this document are licensed under the
Creative Commons – Attribution / Share Alike license.

https://creativecommons.org/licenses/by-sa/2.5

—–BEGIN PGP SIGNATURE—–

iQEzBAABCAAdFiEEDA48qNrrn8VVVcst4yp5f7HQy3AFAl1VgC0ACgkQ4yp5f7HQ
y3BwLggAiz9hHHOz+a6NOG5Yb9Kiq3vlIX1ZUdhLXci3LpCdBTlvh93CrkI1cOPA
rD5TFE/MJCDnbLdrfIffL/3kNeobQI9nuEWPBj9LziinhB5XNe+CUO4Embbkfb2b
hmL/MQ2JUjuNYvJJa9zfLSsZ/RZxyLqBUJItc7c6X+0Yo2OPR2DlVNHxy8mCx9JW
FWG8hRRfsTKsZ+kxDqKaw2gaxsLtOylBIv7l634sH2/Eyat4ceu2BCOtMidTOGVS
PisWgCYvRVdE5KQbOI39AkkYU/RZP4w9GRnLkoBas2aWhLnETfXsCRB3wJER+nMu
iPfgd2F4DBwDWExT0FLAyHkpdYQQng==
=LaRo
—–END PGP SIGNATURE—–

AutorVlatka Misic
Cert idNCERT-REF-2019-08-0001-ADV
CveCERT-CVE-DUMMY
ID izvornikaCERT-ORIGID-DUMMY
ProizvodCERT-DUMMY-PRODUCT
IzvorAdobe
Top
More in Preporuke
Sigurnosni nedostaci programske biblioteke libsass

Otkriveni su sigurnosni nedostaci programske biblioteke libsass za operacijski sustav openSUSE. Otkriveni nedostaci potencijalnim udaljenim napadačima omogućuju izazivanje DoS stanja....

Close