Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2024:4242

Опубликовано: 07 мая 2025
Источник: rocky
Оценка: Moderate

Описание

Moderate: libreoffice security update

LibreOffice is an open source, community-developed office productivity suite. It includes key desktop applications, such as a word processor, a spreadsheet, a presentation manager, a formula editor, and a drawing program. LibreOffice replaces OpenOffice and provides a similar but enhanced and extended office suite.

Security Fix(es):

  • libreoffice: create a document which without prompt will execute scripts built-into LibreOffice on clicking a graphic (CVE-2024-3044)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 8

НаименованиеАрхитектураРелизRPM
autocorr-afnoarch17.el8_10autocorr-af-6.4.7.2-17.el8_10.noarch.rpm
autocorr-bgnoarch17.el8_10autocorr-bg-6.4.7.2-17.el8_10.noarch.rpm
autocorr-canoarch17.el8_10autocorr-ca-6.4.7.2-17.el8_10.noarch.rpm
autocorr-csnoarch17.el8_10autocorr-cs-6.4.7.2-17.el8_10.noarch.rpm
autocorr-danoarch17.el8_10autocorr-da-6.4.7.2-17.el8_10.noarch.rpm
autocorr-denoarch17.el8_10autocorr-de-6.4.7.2-17.el8_10.noarch.rpm
autocorr-ennoarch17.el8_10autocorr-en-6.4.7.2-17.el8_10.noarch.rpm
autocorr-esnoarch17.el8_10autocorr-es-6.4.7.2-17.el8_10.noarch.rpm
autocorr-fanoarch17.el8_10autocorr-fa-6.4.7.2-17.el8_10.noarch.rpm
autocorr-finoarch17.el8_10autocorr-fi-6.4.7.2-17.el8_10.noarch.rpm

Показывать по

Связанные CVE

Исправления

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 1 года назад

Unchecked script execution in Graphic on-click binding in affected LibreOffice versions allows an attacker to create a document which without prompt will execute scripts built-into LibreOffice on clicking a graphic. Such scripts were previously deemed trusted but are now deemed untrusted.

CVSS3: 7.3
redhat
около 1 года назад

Unchecked script execution in Graphic on-click binding in affected LibreOffice versions allows an attacker to create a document which without prompt will execute scripts built-into LibreOffice on clicking a graphic. Such scripts were previously deemed trusted but are now deemed untrusted.

CVSS3: 6.5
nvd
около 1 года назад

Unchecked script execution in Graphic on-click binding in affected LibreOffice versions allows an attacker to create a document which without prompt will execute scripts built-into LibreOffice on clicking a graphic. Such scripts were previously deemed trusted but are now deemed untrusted.

CVSS3: 6.5
debian
около 1 года назад

Unchecked script execution in Graphic on-click binding in affected Lib ...

suse-cvrf
12 месяцев назад

Security update for libreoffice