Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-w6mm-86qp-2r3q

Опубликовано: 05 авг. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

Certificate Validation user interface in LibreOffice allows potential vulnerability.

Signed macros are scripts that have been digitally signed by the developer using a cryptographic signature. When a document with a signed macro is opened a warning is displayed by LibreOffice before the macro is executed.

Previously if verification failed the user could fail to understand the failure and choose to enable the macros anyway.

This issue affects LibreOffice: from 24.2 before 24.2.5.

Certificate Validation user interface in LibreOffice allows potential vulnerability.

Signed macros are scripts that have been digitally signed by the developer using a cryptographic signature. When a document with a signed macro is opened a warning is displayed by LibreOffice before the macro is executed.

Previously if verification failed the user could fail to understand the failure and choose to enable the macros anyway.

This issue affects LibreOffice: from 24.2 before 24.2.5.

EPSS

Процентиль: 4%
0.0002
Низкий

7.8 High

CVSS3

Дефекты

CWE-295

Связанные уязвимости

CVSS3: 7.8
ubuntu
11 месяцев назад

Certificate Validation user interface in LibreOffice allows potential vulnerability. Signed macros are scripts that have been digitally signed by the developer using a cryptographic signature. When a document with a signed macro is opened a warning is displayed by LibreOffice before the macro is executed. Previously if verification failed the user could fail to understand the failure and choose to enable the macros anyway. This issue affects LibreOffice: from 24.2 before 24.2.5.

CVSS3: 7.8
redhat
11 месяцев назад

Certificate Validation user interface in LibreOffice allows potential vulnerability. Signed macros are scripts that have been digitally signed by the developer using a cryptographic signature. When a document with a signed macro is opened a warning is displayed by LibreOffice before the macro is executed. Previously if verification failed the user could fail to understand the failure and choose to enable the macros anyway. This issue affects LibreOffice: from 24.2 before 24.2.5.

CVSS3: 7.8
nvd
11 месяцев назад

Certificate Validation user interface in LibreOffice allows potential vulnerability. Signed macros are scripts that have been digitally signed by the developer using a cryptographic signature. When a document with a signed macro is opened a warning is displayed by LibreOffice before the macro is executed. Previously if verification failed the user could fail to understand the failure and choose to enable the macros anyway. This issue affects LibreOffice: from 24.2 before 24.2.5.

CVSS3: 7.8
debian
11 месяцев назад

Certificate Validation user interface in LibreOffice allows potential ...

rocky
около 1 месяца назад

Moderate: libreoffice security update

EPSS

Процентиль: 4%
0.0002
Низкий

7.8 High

CVSS3

Дефекты

CWE-295