First published: Thu Aug 15 2019(Updated: )
A vulnerability was found in LibreOffice prior to 6.2.6. LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained with the document it is launched from. Protection was added, to address <a href="https://access.redhat.com/security/cve/CVE-2019-9848">CVE-2019-9848</a>, to block calling LibreLogo from document event script handers, e.g. mouse over. However LibreOffice also has a separate feature where documents can specify that pre-installed scripts can be executed on various global script events such as document-open, etc. In the fixed versions, global script event handlers are validated equivalently to document script event handlers. Reference: <a href="https://packetstormsecurity.com/files/154168/LibreOffice-Macro-Python-Code-Execution.html">https://packetstormsecurity.com/files/154168/LibreOffice-Macro-Python-Code-Execution.html</a> <a href="https://seclists.org/bugtraq/2019/Aug/28">https://seclists.org/bugtraq/2019/Aug/28</a>
Credit: security@documentfoundation.org security@documentfoundation.org
Affected Software | Affected Version | How to fix |
---|---|---|
Canonical Ubuntu Linux | =16.04 | |
Canonical Ubuntu Linux | =18.04 | |
Canonical Ubuntu Linux | =19.04 | |
Debian Debian Linux | =8.0 | |
Debian Debian Linux | =9.0 | |
Debian Debian Linux | =10.0 | |
Fedoraproject Fedora | =29 | |
openSUSE Leap | =15.0 | |
openSUSE Leap | =15.1 | |
Libreoffice Libreoffice | <6.2.6 | |
redhat/LibreOffice | <6.2.6 | 6.2.6 |
redhat/LibreOffice | <6.3.0 | 6.3.0 |
debian/libreoffice | 1:7.0.4-4+deb11u10 1:7.0.4-4+deb11u11 4:7.4.7-1+deb12u4 4:7.4.7-1+deb12u5 4:24.8.2-1 4:24.8.2-2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.