Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2024:5598

Опубликовано: 07 мая 2025
Источник: rocky
Оценка: Moderate

Описание

Moderate: libreoffice security update

LibreOffice is an open source, community-developed office productivity suite. It includes key desktop applications, such as a word processor, a spreadsheet, a presentation manager, a formula editor, and a drawing program. LibreOffice replaces OpenOffice and provides a similar but enhanced and extended office suite.

Security Fix(es):

  • libreoffice: bility to trust not validated macro signatures removed in high security mode (CVE-2024-6472)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 8

НаименованиеАрхитектураРелизRPM
autocorr-afnoarch18.el8_10autocorr-af-6.4.7.2-18.el8_10.noarch.rpm
autocorr-bgnoarch18.el8_10autocorr-bg-6.4.7.2-18.el8_10.noarch.rpm
autocorr-canoarch18.el8_10autocorr-ca-6.4.7.2-18.el8_10.noarch.rpm
autocorr-csnoarch18.el8_10autocorr-cs-6.4.7.2-18.el8_10.noarch.rpm
autocorr-danoarch18.el8_10autocorr-da-6.4.7.2-18.el8_10.noarch.rpm
autocorr-denoarch18.el8_10autocorr-de-6.4.7.2-18.el8_10.noarch.rpm
autocorr-ennoarch18.el8_10autocorr-en-6.4.7.2-18.el8_10.noarch.rpm
autocorr-esnoarch18.el8_10autocorr-es-6.4.7.2-18.el8_10.noarch.rpm
autocorr-fanoarch18.el8_10autocorr-fa-6.4.7.2-18.el8_10.noarch.rpm
autocorr-finoarch18.el8_10autocorr-fi-6.4.7.2-18.el8_10.noarch.rpm

Показывать по

Связанные CVE

Связанные уязвимости

CVSS3: 7.8
ubuntu
11 месяцев назад

Certificate Validation user interface in LibreOffice allows potential vulnerability. Signed macros are scripts that have been digitally signed by the developer using a cryptographic signature. When a document with a signed macro is opened a warning is displayed by LibreOffice before the macro is executed. Previously if verification failed the user could fail to understand the failure and choose to enable the macros anyway. This issue affects LibreOffice: from 24.2 before 24.2.5.

CVSS3: 7.8
redhat
11 месяцев назад

Certificate Validation user interface in LibreOffice allows potential vulnerability. Signed macros are scripts that have been digitally signed by the developer using a cryptographic signature. When a document with a signed macro is opened a warning is displayed by LibreOffice before the macro is executed. Previously if verification failed the user could fail to understand the failure and choose to enable the macros anyway. This issue affects LibreOffice: from 24.2 before 24.2.5.

CVSS3: 7.8
nvd
11 месяцев назад

Certificate Validation user interface in LibreOffice allows potential vulnerability. Signed macros are scripts that have been digitally signed by the developer using a cryptographic signature. When a document with a signed macro is opened a warning is displayed by LibreOffice before the macro is executed. Previously if verification failed the user could fail to understand the failure and choose to enable the macros anyway. This issue affects LibreOffice: from 24.2 before 24.2.5.

CVSS3: 7.8
debian
11 месяцев назад

Certificate Validation user interface in LibreOffice allows potential ...

CVSS3: 7.8
github
11 месяцев назад

Certificate Validation user interface in LibreOffice allows potential vulnerability. Signed macros are scripts that have been digitally signed by the developer using a cryptographic signature. When a document with a signed macro is opened a warning is displayed by LibreOffice before the macro is executed. Previously if verification failed the user could fail to understand the failure and choose to enable the macros anyway. This issue affects LibreOffice: from 24.2 before 24.2.5.