Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2024-3044

Опубликовано: 14 мая 2024
Источник: debian
EPSS Низкий

Описание

Unchecked script execution in Graphic on-click binding in affected LibreOffice versions allows an attacker to create a document which without prompt will execute scripts built-into LibreOffice on clicking a graphic. Such scripts were previously deemed trusted but are now deemed untrusted.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libreofficefixed4:24.2.3~rc1-2package

Примечания

  • https://www.libreoffice.org/about-us/security/advisories/cve-2024-3044/

  • https://git.libreoffice.org/core/+/8b2402b16df185119c91222b33ff1b8d55e0afe4%5E%21

EPSS

Процентиль: 78%
0.01169
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 1 года назад

Unchecked script execution in Graphic on-click binding in affected LibreOffice versions allows an attacker to create a document which without prompt will execute scripts built-into LibreOffice on clicking a graphic. Such scripts were previously deemed trusted but are now deemed untrusted.

CVSS3: 7.3
redhat
около 1 года назад

Unchecked script execution in Graphic on-click binding in affected LibreOffice versions allows an attacker to create a document which without prompt will execute scripts built-into LibreOffice on clicking a graphic. Such scripts were previously deemed trusted but are now deemed untrusted.

CVSS3: 6.5
nvd
около 1 года назад

Unchecked script execution in Graphic on-click binding in affected LibreOffice versions allows an attacker to create a document which without prompt will execute scripts built-into LibreOffice on clicking a graphic. Such scripts were previously deemed trusted but are now deemed untrusted.

suse-cvrf
12 месяцев назад

Security update for libreoffice

suse-cvrf
12 месяцев назад

Security update for libreoffice

EPSS

Процентиль: 78%
0.01169
Низкий