USN-7062-1: libgsf vulnerabilities
It was discovered that libgsf incorrectly handled certain Compound Document Binary files. If a user or automated system were tricked into opening a specially crafted file, a remote attacker could possibly use this issue to execute arbitrary code.
Affected Software
Event History
Frequently Asked Questions
What is the severity of USN-7062-1?
USN-7062-1 has a high severity due to its potential for remote code execution.
How do I fix USN-7062-1?
To fix USN-7062-1, update libgsf-1-114 to version 1.14.51-2ubuntu0.1 or higher on affected Ubuntu systems.
What causes the vulnerability in USN-7062-1?
The vulnerability in USN-7062-1 is caused by libgsf incorrectly handling certain Compound Document Binary files.
Who is affected by USN-7062-1?
Users of Ubuntu versions 20.04, 22.04, and 24.04 with specific versions of libgsf-1-114 are affected by USN-7062-1.
Is there a known exploit for USN-7062-1?
While no specific exploit is publicly disclosed, the vulnerability could allow remote attackers to execute arbitrary code.