ALT-PU-2017-1170-1
Package LibreOffice updated to version 5.3.0.3-alt1 for branch sisyphus in task 178229.
Closed vulnerabilities
BDU:2017-01193
Уязвимость функции ReadJPEG пакета офисных программ LibreOffice, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код
BDU:2017-01264
Уязвимость функции EnhWMFReader::ReadEnhWMF пакета офисных программ LibreOffice, позволяющая нарушителю выполнить произвольный код
BDU:2017-01548
Уязвимость функции HWPFile::TagsRead пакета офисных программ LibreOffice, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2017-01549
Уязвимость функции tools::Polygon::Insert пакета офисных программ LibreOffice, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2017-01555
Уязвимость функции SVMConverter::ImplConvertFromSVM1 пакета офисных программ LibreOffice, позволяющая нарушителю вызвать отказ в обслуживании
Modified: 2024-11-21
CVE-2016-10327
LibreOffice before 2016-12-22 has an out-of-bounds write caused by a heap-based buffer overflow related to the EnhWMFReader::ReadEnhWMF function in vcl/source/filter/wmf/enhwmf.cxx.
- http://www.libreoffice.org/about-us/security/advisories/cve-2016-10327/
- http://www.libreoffice.org/about-us/security/advisories/cve-2016-10327/
- 97668
- 97668
- https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=313
- https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=313
- https://github.com/LibreOffice/core/commit/7485fc2a1484f31631f62f97e5c64c0ae74c6416
- https://github.com/LibreOffice/core/commit/7485fc2a1484f31631f62f97e5c64c0ae74c6416
- GLSA-201706-28
- GLSA-201706-28
Modified: 2024-11-21
CVE-2017-7856
LibreOffice before 2017-03-11 has an out-of-bounds write caused by a heap-based buffer overflow in the SVMConverter::ImplConvertFromSVM1 function in vcl/source/gdi/svmconverter.cxx.
- http://www.libreoffice.org/about-us/security/advisories/cve-2017-7856/
- http://www.libreoffice.org/about-us/security/advisories/cve-2017-7856/
- 97667
- 97667
- https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=817
- https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=817
- https://github.com/LibreOffice/core/commit/28e61b634353110445e334ccaa415d7fb6629d62
- https://github.com/LibreOffice/core/commit/28e61b634353110445e334ccaa415d7fb6629d62
Modified: 2024-11-21
CVE-2017-7870
LibreOffice before 2017-01-02 has an out-of-bounds write caused by a heap-based buffer overflow related to the tools::Polygon::Insert function in tools/source/generic/poly.cxx.
- DSA-3837
- DSA-3837
- http://www.libreoffice.org/about-us/security/advisories/cve-2017-7870/
- http://www.libreoffice.org/about-us/security/advisories/cve-2017-7870/
- 97671
- 97671
- 1039029
- 1039029
- RHSA-2017:1975
- RHSA-2017:1975
- https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=372
- https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=372
- https://github.com/LibreOffice/core/commit/62a97e6a561ce65e88d4c537a1b82c336f012722
- https://github.com/LibreOffice/core/commit/62a97e6a561ce65e88d4c537a1b82c336f012722
- GLSA-201706-28
- GLSA-201706-28
Modified: 2024-11-21
CVE-2017-7882
LibreOffice before 2017-03-14 has an out-of-bounds write related to the HWPFile::TagsRead function in hwpfilter/source/hwpfile.cxx.
- http://www.libreoffice.org/about-us/security/advisories/cve-2017-7882/
- http://www.libreoffice.org/about-us/security/advisories/cve-2017-7882/
- 97684
- 97684
- https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=860
- https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=860
- https://github.com/LibreOffice/core/commit/65dcd1d8195069c8c8acb3a188b8e5616c51029c
- https://github.com/LibreOffice/core/commit/65dcd1d8195069c8c8acb3a188b8e5616c51029c
Modified: 2024-11-21
CVE-2017-8358
LibreOffice before 2017-03-17 has an out-of-bounds write caused by a heap-based buffer overflow related to the ReadJPEG function in vcl/source/filter/jpeg/jpegc.cxx.