Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2024-3044

Опубликовано: 14 мая 2024
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 6.5

Описание

Unchecked script execution in Graphic on-click binding in affected LibreOffice versions allows an attacker to create a document which without prompt will execute scripts built-into LibreOffice on clicking a graphic. Such scripts were previously deemed trusted but are now deemed untrusted.

РелизСтатусПримечание
devel

released

4:24.2.4~rc1-0ubuntu1
esm-infra/focal

not-affected

1:6.4.7-0ubuntu0.20.04.10
focal

released

1:6.4.7-0ubuntu0.20.04.10
jammy

released

1:7.3.7-0ubuntu0.22.04.5
mantic

released

4:7.6.7-0ubuntu0.23.10.2
noble

released

4:24.2.3-0ubuntu0.24.04.2
upstream

released

7.6.7,24.2.3,4:24.2.3~rc1-2

Показывать по

EPSS

Процентиль: 78%
0.01169
Низкий

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 7.3
redhat
около 1 года назад

Unchecked script execution in Graphic on-click binding in affected LibreOffice versions allows an attacker to create a document which without prompt will execute scripts built-into LibreOffice on clicking a graphic. Such scripts were previously deemed trusted but are now deemed untrusted.

CVSS3: 6.5
nvd
около 1 года назад

Unchecked script execution in Graphic on-click binding in affected LibreOffice versions allows an attacker to create a document which without prompt will execute scripts built-into LibreOffice on clicking a graphic. Such scripts were previously deemed trusted but are now deemed untrusted.

CVSS3: 6.5
debian
около 1 года назад

Unchecked script execution in Graphic on-click binding in affected Lib ...

suse-cvrf
12 месяцев назад

Security update for libreoffice

suse-cvrf
12 месяцев назад

Security update for libreoffice

EPSS

Процентиль: 78%
0.01169
Низкий

6.5 Medium

CVSS3