RHSA-2023:0089MediumCVSS 8.8
Red Hat Security Advisory: libreoffice security update
🔗 CVE IDs covered (4)
📋 Description
CVE-2022-3140 — libreoffice: Macro URL arbitrary script execution CVE-2022-26305 — libreoffice: Execution of Untrusted Macros Due to Improper Certificate Validation CVE-2022-26306 — libreoffice: Static Initialization Vector Allows to Recover Passwords for Web Connections Without Knowing the Master Password CVE-2022-26307 — libreoffice: Weak Master Keys
🔗 References (7)
- selfhttps://access.redhat.com/errata/RHSA-2023:0089
- externalhttps://access.redhat.com/security/updates/classification/#moderate
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2118610
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2118611
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2118613
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2134697
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2023/rhsa-2023_0089.json