https://seclists.org/oss-sec/2023/q4/343: CVE-2023-47804: Apache OpenOffice: Macro URL arbitrary script execution
Published Dec 28, 2023
·Updated
Affected Software
1 affected component
Apache OpenOffice<=4.1.15
Frequently Asked Questions
1
What is the severity of CVE-2023-47804?
The severity of CVE-2023-47804 is classified as important.
2
Which versions of Apache OpenOffice are affected by CVE-2023-47804?
Apache OpenOffice versions through 4.1.15 are affected by CVE-2023-47804.
3
What does CVE-2023-47804 allow attackers to do?
CVE-2023-47804 allows attackers to execute arbitrary scripts by exploiting macro links in Apache OpenOffice documents.
4
How can I fix CVE-2023-47804?
To fix CVE-2023-47804, update Apache OpenOffice to the latest version, beyond 4.1.15.
5
What should I do to mitigate risks associated with CVE-2023-47804?
To mitigate risks from CVE-2023-47804, avoid opening untrusted documents containing macros in Apache OpenOffice.