Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2021-25631

Опубликовано: 03 мая 2021
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 9.3
CVSS3: 8.8

Описание

In the LibreOffice 7-1 series in versions prior to 7.1.2, and in the 7-0 series in versions prior to 7.0.5, the denylist can be circumvented by manipulating the link so it doesn't match the denylist but results in ShellExecute attempting to launch an executable type.

РелизСтатусПримечание
bionic

not-affected

windows-only
devel

not-affected

windows-only
esm-infra-legacy/trusty

DNE

esm-infra/focal

not-affected

windows-only
focal

not-affected

windows-only
groovy

ignored

end of life
hirsute

not-affected

windows-only
impish

not-affected

windows-only
jammy

not-affected

windows-only
precise/esm

DNE

Показывать по

EPSS

Процентиль: 89%
0.0428
Низкий

9.3 Critical

CVSS2

8.8 High

CVSS3

Связанные уязвимости

CVSS3: 8.8
nvd
почти 5 лет назад

In the LibreOffice 7-1 series in versions prior to 7.1.2, and in the 7-0 series in versions prior to 7.0.5, the denylist can be circumvented by manipulating the link so it doesn't match the denylist but results in ShellExecute attempting to launch an executable type.

CVSS3: 8.8
debian
почти 5 лет назад

In the LibreOffice 7-1 series in versions prior to 7.1.2, and in the 7 ...

github
больше 3 лет назад

In the LibreOffice 7-1 series in versions prior to 7.1.2, and in the 7-0 series in versions prior to 7.0.5, the denylist can be circumvented by manipulating the link so it doesn't match the denylist but results in ShellExecute attempting to launch an executable type.

CVSS3: 8.8
fstec
почти 5 лет назад

Уязвимость пакета офисных программ LibreOffice, связанная с ошибками в настройках безопасности, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации

EPSS

Процентиль: 89%
0.0428
Низкий

9.3 Critical

CVSS2

8.8 High

CVSS3