Описание
LibreOffice Calc can import tracked changes from a spreadsheet document. A heap buffer overflow existed when a document reused the same change identifier for two different kinds of change. The importer then treated one change object as a different, larger type and wrote past the end of its allocation. In fixed versions records with a duplicate identifier are rejected.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 4:26.2.4.2-0ubuntu1 |
| esm-infra/focal | needs-triage | |
| jammy | released | 1:7.3.7-0ubuntu0.22.04.12 |
| noble | released | 4:24.2.7-0ubuntu0.24.04.6 |
| questing | ignored | end of life, was needs-triage |
| resolute | released | 4:26.2.4.2-0ubuntu0.26.04.2 |
| upstream | released | 26.2.4 |
Показывать по
EPSS
Связанные уязвимости
LibreOffice Calc can import tracked changes from a spreadsheet document. A heap buffer overflow existed when a document reused the same change identifier for two different kinds of change. The importer then treated one change object as a different, larger type and wrote past the end of its allocation. In fixed versions records with a duplicate identifier are rejected.
LibreOffice Calc can import tracked changes from a spreadsheet document. A heap buffer overflow existed when a document reused the same change identifier for two different kinds of change. The importer then treated one change object as a different, larger type and wrote past the end of its allocation. In fixed versions records with a duplicate identifier are rejected.
LibreOffice Calc can import tracked changes from a spreadsheet documen ...
LibreOffice Calc can import tracked changes from a spreadsheet document. A heap buffer overflow existed when a document reused the same change identifier for two different kinds of change. The importer then treated one change object as a different, larger type and wrote past the end of its allocation. In fixed versions records with a duplicate identifier are rejected.
Уязвимость пакета офисных программ LibreOffice, связанная с переполнением буфера в динамической памяти, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации
EPSS