Описание
Security update for libreoffice
This update for libreoffice to 6.4.4.2 fixes the following issues:
Security issue fixed:
- CVE-2020-12801: Fixed an issue with encrypted MSOffice documents that could be accidentally saved unencrypted (bsc#1171997).
Non-security issues fixed:
- Elements on title page mixed up (bsc#1160687).
- Image shadow that should be invisible shown as extraneous line below (bsc#1165870).
Список пакетов
SUSE Linux Enterprise Software Development Kit 12 SP4
SUSE Linux Enterprise Software Development Kit 12 SP5
SUSE Linux Enterprise Workstation Extension 12 SP4
SUSE Linux Enterprise Workstation Extension 12 SP5
Ссылки
- Link for SUSE-SU-2020:1731-1
- E-Mail link for SUSE-SU-2020:1731-1
- SUSE Security Ratings
- SUSE Bug 1160687
- SUSE Bug 1165870
- SUSE Bug 1167463
- SUSE Bug 1171997
- SUSE CVE CVE-2020-12801 page
Описание
If LibreOffice has an encrypted document open and crashes, that document is auto-saved encrypted. On restart, LibreOffice offers to restore the document and prompts for the password to decrypt it. If the recovery is successful, and if the file format of the recovered document was not LibreOffice's default ODF file format, then affected versions of LibreOffice default that subsequent saves of the document are unencrypted. This may lead to a user accidentally saving a MSOffice file format document unencrypted while believing it to be encrypted. This issue affects: LibreOffice 6-3 series versions prior to 6.3.6; 6-4 series versions prior to 6.4.3.
Затронутые продукты
Ссылки
- CVE-2020-12801
- SUSE Bug 1171997