First published: Tue Mar 04 2025(Updated: )
Last updated 11 March 2025
Credit: security@documentfoundation.org
Affected Software | Affected Version | How to fix |
---|---|---|
LibreOffice Draw | >=24.8<24.8.5 | |
LibreOffice Draw | >=25.2<25.2.1 | |
debian/libreoffice | <=1:7.0.4-4+deb11u10<=1:7.0.4-4+deb11u12<=4:7.4.7-1+deb12u5 | 4:7.4.7-1+deb12u7 4:25.2.1-3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-1080 is classified as a moderate severity vulnerability affecting specific versions of LibreOffice.
To fix CVE-2025-1080, users should update LibreOffice to the latest available version that addresses this vulnerability.
CVE-2025-1080 affects LibreOffice versions 24.8 to 24.8.5 and 25.2 to 25.2.1.
CVE-2025-1080 is related to the additional URI scheme 'vnd.libreoffice.command' that integrates LibreOffice with MS SharePoint.
CVE-2025-1080 may allow an attacker to execute unintended commands via malicious links targeting affected versions of LibreOffice.