Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2020:0121-1

Опубликовано: 17 янв. 2020
Источник: suse-cvrf

Описание

Security update for LibreOffice

This update libreoffice to version 6.3.3 fixes the following issues:

LibreOffice was updated to 6.3.3 (jsc#SLE-8705), bringing many bug and stability fixes.

More information for the 6.3 release at: https://wiki.documentfoundation.org/ReleaseNotes/6.3

Security issue fixed:

  • CVE-2019-9853: Fixed an issue where by executing macros, the security settings could have been bypassed (bsc#1152684).

Other issues addressed:

  • Dropped disable-kde4 switch, since it is no longer known by configure
  • Disabled gtk2 because it will be removed in future releases
  • librelogo is now a standalone sub-package (bsc#1144522).
  • Partial fixes for an issue where Table(s) from DOCX showed wrong position or color (bsc#1061210).

Список пакетов

SUSE Linux Enterprise Workstation Extension 15 SP1
libreoffice-6.3.3.2-8.13.1
libreoffice-base-6.3.3.2-8.13.1
libreoffice-base-drivers-postgresql-6.3.3.2-8.13.1
libreoffice-branding-upstream-6.3.3.2-8.13.1
libreoffice-calc-6.3.3.2-8.13.1
libreoffice-calc-extensions-6.3.3.2-8.13.1
libreoffice-draw-6.3.3.2-8.13.1
libreoffice-filters-optional-6.3.3.2-8.13.1
libreoffice-gnome-6.3.3.2-8.13.1
libreoffice-gtk3-6.3.3.2-8.13.1
libreoffice-icon-themes-6.3.3.2-8.13.1
libreoffice-impress-6.3.3.2-8.13.1
libreoffice-l10n-af-6.3.3.2-8.13.1
libreoffice-l10n-ar-6.3.3.2-8.13.1
libreoffice-l10n-as-6.3.3.2-8.13.1
libreoffice-l10n-bg-6.3.3.2-8.13.1
libreoffice-l10n-bn-6.3.3.2-8.13.1
libreoffice-l10n-br-6.3.3.2-8.13.1
libreoffice-l10n-ca-6.3.3.2-8.13.1
libreoffice-l10n-cs-6.3.3.2-8.13.1
libreoffice-l10n-cy-6.3.3.2-8.13.1
libreoffice-l10n-da-6.3.3.2-8.13.1
libreoffice-l10n-de-6.3.3.2-8.13.1
libreoffice-l10n-dz-6.3.3.2-8.13.1
libreoffice-l10n-el-6.3.3.2-8.13.1
libreoffice-l10n-en-6.3.3.2-8.13.1
libreoffice-l10n-eo-6.3.3.2-8.13.1
libreoffice-l10n-es-6.3.3.2-8.13.1
libreoffice-l10n-et-6.3.3.2-8.13.1
libreoffice-l10n-eu-6.3.3.2-8.13.1
libreoffice-l10n-fa-6.3.3.2-8.13.1
libreoffice-l10n-fi-6.3.3.2-8.13.1
libreoffice-l10n-fr-6.3.3.2-8.13.1
libreoffice-l10n-ga-6.3.3.2-8.13.1
libreoffice-l10n-gl-6.3.3.2-8.13.1
libreoffice-l10n-gu-6.3.3.2-8.13.1
libreoffice-l10n-he-6.3.3.2-8.13.1
libreoffice-l10n-hi-6.3.3.2-8.13.1
libreoffice-l10n-hr-6.3.3.2-8.13.1
libreoffice-l10n-hu-6.3.3.2-8.13.1
libreoffice-l10n-it-6.3.3.2-8.13.1
libreoffice-l10n-ja-6.3.3.2-8.13.1
libreoffice-l10n-kk-6.3.3.2-8.13.1
libreoffice-l10n-kn-6.3.3.2-8.13.1
libreoffice-l10n-ko-6.3.3.2-8.13.1
libreoffice-l10n-lt-6.3.3.2-8.13.1
libreoffice-l10n-lv-6.3.3.2-8.13.1
libreoffice-l10n-mai-6.3.3.2-8.13.1
libreoffice-l10n-ml-6.3.3.2-8.13.1
libreoffice-l10n-mr-6.3.3.2-8.13.1
libreoffice-l10n-nb-6.3.3.2-8.13.1
libreoffice-l10n-nl-6.3.3.2-8.13.1
libreoffice-l10n-nn-6.3.3.2-8.13.1
libreoffice-l10n-nr-6.3.3.2-8.13.1
libreoffice-l10n-nso-6.3.3.2-8.13.1
libreoffice-l10n-or-6.3.3.2-8.13.1
libreoffice-l10n-pa-6.3.3.2-8.13.1
libreoffice-l10n-pl-6.3.3.2-8.13.1
libreoffice-l10n-pt_BR-6.3.3.2-8.13.1
libreoffice-l10n-pt_PT-6.3.3.2-8.13.1
libreoffice-l10n-ro-6.3.3.2-8.13.1
libreoffice-l10n-ru-6.3.3.2-8.13.1
libreoffice-l10n-si-6.3.3.2-8.13.1
libreoffice-l10n-sk-6.3.3.2-8.13.1
libreoffice-l10n-sl-6.3.3.2-8.13.1
libreoffice-l10n-sr-6.3.3.2-8.13.1
libreoffice-l10n-ss-6.3.3.2-8.13.1
libreoffice-l10n-st-6.3.3.2-8.13.1
libreoffice-l10n-sv-6.3.3.2-8.13.1
libreoffice-l10n-ta-6.3.3.2-8.13.1
libreoffice-l10n-te-6.3.3.2-8.13.1
libreoffice-l10n-th-6.3.3.2-8.13.1
libreoffice-l10n-tn-6.3.3.2-8.13.1
libreoffice-l10n-tr-6.3.3.2-8.13.1
libreoffice-l10n-ts-6.3.3.2-8.13.1
libreoffice-l10n-uk-6.3.3.2-8.13.1
libreoffice-l10n-ve-6.3.3.2-8.13.1
libreoffice-l10n-xh-6.3.3.2-8.13.1
libreoffice-l10n-zh_CN-6.3.3.2-8.13.1
libreoffice-l10n-zh_TW-6.3.3.2-8.13.1
libreoffice-l10n-zu-6.3.3.2-8.13.1
libreoffice-mailmerge-6.3.3.2-8.13.1
libreoffice-math-6.3.3.2-8.13.1
libreoffice-officebean-6.3.3.2-8.13.1
libreoffice-pyuno-6.3.3.2-8.13.1
libreoffice-writer-6.3.3.2-8.13.1
libreoffice-writer-extensions-6.3.3.2-8.13.1
libreofficekit-6.3.3.2-8.13.1

Описание

LibreOffice documents can contain macros. The execution of those macros is controlled by the document security settings, typically execution of macros are blocked by default. A URL decoding flaw existed in how the urls to the macros within the document were processed and categorized, resulting in the possibility to construct a document where macro execution bypassed the security settings. The documents were correctly detected as containing macros, and prompted the user to their existence within the documents, but macros within the document were subsequently not controlled by the security settings allowing arbitrary macro execution This issue affects: LibreOffice 6.2 series versions prior to 6.2.7; LibreOffice 6.3 series versions prior to 6.3.1.


Затронутые продукты
SUSE Linux Enterprise Workstation Extension 15 SP1:libreoffice-6.3.3.2-8.13.1
SUSE Linux Enterprise Workstation Extension 15 SP1:libreoffice-base-6.3.3.2-8.13.1
SUSE Linux Enterprise Workstation Extension 15 SP1:libreoffice-base-drivers-postgresql-6.3.3.2-8.13.1
SUSE Linux Enterprise Workstation Extension 15 SP1:libreoffice-branding-upstream-6.3.3.2-8.13.1

Ссылки