cbcvebase.

Debian Libreoffice vulnerabilities

62 known vulnerabilities affecting debian/libreoffice.

Total CVEs
62
CISA KEV
0
Public exploits
4
Exploited in wild
1
Severity breakdown
CRITICAL8HIGH32MEDIUM13LOW9

Vulnerabilities

Page 2 of 4
CVE-2021-25633P3HIGHCVSS 7.5fixed in libreoffice 1:7.2.0-2 (bookworm)2021
CVE-2021-25633 [HIGH] CVE-2021-25633: libreoffice - LibreOffice supports digital signatures of ODF documents and macros within docum... LibreOffice supports digital signatures of ODF documents and macros within documents, presenting visual aids that no alteration of the document occurred since the last signing and that the signature is valid. An Improper Certificate Validation vulnerability in LibreOffice allowed an attacker to create a digitally signed ODF document, by manipulating the document
debian
CVE-2022-3140P3MEDIUMCVSS 6.3fixed in libreoffice 1:7.4.1~rc2-3 (bookworm)2022
CVE-2022-3140 [MEDIUM] CVE-2022-3140: libreoffice - LibreOffice supports Office URI Schemes to enable browser integration of LibreOf... LibreOffice supports Office URI Schemes to enable browser integration of LibreOffice with MS SharePoint server. An additional scheme 'vnd.libreoffice.command' specific to LibreOffice was added. In the affected versions of LibreOffice links using that scheme could be constructed to call internal macros with arbitrary arguments. Which when clicked on, or activated
debian
CVE-2021-25634P3HIGHCVSS 7.5fixed in libreoffice 1:7.2.0-2 (bookworm)2021
CVE-2021-25634 [HIGH] CVE-2021-25634: libreoffice - LibreOffice supports digital signatures of ODF documents and macros within docum... LibreOffice supports digital signatures of ODF documents and macros within documents, presenting visual aids that no alteration of the document occurred since the last signing and that the signature is valid. An Improper Certificate Validation vulnerability in LibreOffice allowed an attacker to modify a digitally signed ODF document to insert an additional signi
debian
CVE-2012-2334P3MEDIUMCVSS 6.8fixed in libreoffice 1:3.5.2~rc2-1 (bookworm)2012
CVE-2012-2334 [MEDIUM] CVE-2012-2334: libreoffice - Integer overflow in filter/source/msfilter/msdffimp.cxx in OpenOffice.org (OOo) ... Integer overflow in filter/source/msfilter/msdffimp.cxx in OpenOffice.org (OOo) 3.3, 3.4 Beta, and possibly earlier, and LibreOffice before 3.5.3, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the length of an Escher graphics record in a PowerPoint (.ppt) document, which triggers a buffer overflow. Scope: lo
debian
CVE-2019-9854P3HIGHCVSS 7.8fixed in libreoffice 1:6.3.1~rc2-1 (bookworm)2019
CVE-2019-9854 [HIGH] CVE-2019-9854: libreoffice - LibreOffice has a feature where documents can specify that pre-installed macros ... LibreOffice has a feature where documents can specify that pre-installed macros can be executed on various script events such as mouse-over, document-open etc. Access is intended to be restricted to scripts under the share/Scripts/python, user/Scripts/python sub-directories of the LibreOffice install. Protection was added, to address CVE-2019-9852, to avoid a dire
debian
CVE-2019-9852P3HIGHCVSS 7.8fixed in libreoffice 1:6.3.0-1 (bookworm)2019
CVE-2019-9852 [HIGH] CVE-2019-9852: libreoffice - LibreOffice has a feature where documents can specify that pre-installed macros ... LibreOffice has a feature where documents can specify that pre-installed macros can be executed on various script events such as mouse-over, document-open etc. Access is intended to be restricted to scripts under the share/Scripts/python, user/Scripts/python sub-directories of the LibreOffice install. Protection was added, to address CVE-2018-16858, to avoid a dir
debian
CVE-2022-38745P3HIGHCVSS 7.8fixed in libreoffice 1:7.3.1-1 (bookworm)2022
CVE-2022-38745 [HIGH] CVE-2022-38745: libreoffice - Apache OpenOffice versions before 4.1.14 may be configured to add an empty entry... Apache OpenOffice versions before 4.1.14 may be configured to add an empty entry to the Java class path. This may lead to run arbitrary Java code from the current directory. Scope: local bookworm: resolved (fixed in 1:7.3.1-1) bullseye: resolved (fixed in 1:7.0.4-4+deb11u6) forky: resolved (fixed in 1:7.3.1-1) sid: resolved (fixed in 1:7.3.1-1) trixie: resolved
debian
CVE-2015-5212P3MEDIUMCVSS 6.8fixed in libreoffice 1:5.0.1~rc1-1 (bookworm)2015
CVE-2015-5212 [MEDIUM] CVE-2015-5212: libreoffice - Integer underflow in LibreOffice before 4.4.5 and Apache OpenOffice before 4.1.2... Integer underflow in LibreOffice before 4.4.5 and Apache OpenOffice before 4.1.2, when the configuration setting "Load printer settings with the document" is enabled, allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via crafted PrinterSetup data in an ODF document. Scope: local book
debian
CVE-2015-1774P3MEDIUMCVSS 6.8fixed in libreoffice 1:4.4.2-1 (bookworm)2015
CVE-2015-1774 [MEDIUM] CVE-2015-1774: libreoffice - The HWP filter in LibreOffice before 4.3.7 and 4.4.x before 4.4.2 and Apache Ope... The HWP filter in LibreOffice before 4.3.7 and 4.4.x before 4.4.2 and Apache OpenOffice before 4.1.2 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted HWP document, which triggers an out-of-bounds write. Scope: local bookworm: resolved (fixed in 1:4.4.2-1) bullseye: resolved (fixed in 1:4.4.2-1) forky:
debian
CVE-2025-1080P3HIGHCVSS 7.2fixed in libreoffice 4:7.4.7-1+deb12u7 (bookworm)2025
CVE-2025-1080 [HIGH] CVE-2025-1080: libreoffice - LibreOffice supports Office URI Schemes to enable browser integration of LibreOf... LibreOffice supports Office URI Schemes to enable browser integration of LibreOffice with MS SharePoint server. An additional scheme 'vnd.libreoffice.command' specific to LibreOffice was added. In the affected versions of LibreOffice a link in a browser using that scheme could be constructed with an embedded inner URL that when passed to LibreOffice could call int
debian
CVE-2014-9093P3HIGHCVSS 7.5fixed in libreoffice 1:4.3.3-2 (bookworm)2014
CVE-2014-9093 [HIGH] CVE-2014-9093: libreoffice - LibreOffice before 4.3.5 allows remote attackers to cause a denial of service (i... LibreOffice before 4.3.5 allows remote attackers to cause a denial of service (invalid write operation and crash) and possibly execute arbitrary code via a crafted RTF file. Scope: local bookworm: resolved (fixed in 1:4.3.3-2) bullseye: resolved (fixed in 1:4.3.3-2) forky: resolved (fixed in 1:4.3.3-2) sid: resolved (fixed in 1:4.3.3-2) trixie: resolved (fixed in
debian
CVE-2016-4324P3HIGHCVSS 7.8fixed in libreoffice 1:5.1.4~rc1-1 (bookworm)2016
CVE-2016-4324 [HIGH] CVE-2016-4324: libreoffice - Use-after-free vulnerability in LibreOffice before 5.1.4 allows remote attackers... Use-after-free vulnerability in LibreOffice before 5.1.4 allows remote attackers to execute arbitrary code via a crafted RTF file, related to stylesheet and superscript tokens. Scope: local bookworm: resolved (fixed in 1:5.1.4~rc1-1) bullseye: resolved (fixed in 1:5.1.4~rc1-1) forky: resolved (fixed in 1:5.1.4~rc1-1) sid: resolved (fixed in 1:5.1.4~rc1-1) trixie:
debian
CVE-2023-0950P3HIGHCVSS 7.8fixed in libreoffice 4:7.4.5-3 (bookworm)2023
CVE-2023-0950 [HIGH] CVE-2023-0950: libreoffice - Improper Validation of Array Index vulnerability in the spreadsheet component of... Improper Validation of Array Index vulnerability in the spreadsheet component of The Document Foundation LibreOffice allows an attacker to craft a spreadsheet document that will cause an array index underflow when loaded. In the affected versions of LibreOffice certain malformed spreadsheet formulas, such as AGGREGATE, could be created with less parameters passed
debian
CVE-2014-0247P3CRITICALCVSS 10.0fixed in libreoffice 1:4.2.5-1 (bookworm)2014
CVE-2014-0247 [CRITICAL] CVE-2014-0247: libreoffice - LibreOffice 4.2.4 executes unspecified VBA macros automatically, which has unspe... LibreOffice 4.2.4 executes unspecified VBA macros automatically, which has unspecified impact and attack vectors, possibly related to doc/docmacromode.cxx. Scope: local bookworm: resolved (fixed in 1:4.2.5-1) bullseye: resolved (fixed in 1:4.2.5-1) forky: resolved (fixed in 1:4.2.5-1) sid: resolved (fixed in 1:4.2.5-1) trixie: resolved (fixed in 1:4.2.5-1)
debian
CVE-2016-1513P3HIGHCVSS 7.8fixed in libreoffice 1:4.3.3-1 (bookworm)2016
CVE-2016-1513 [HIGH] CVE-2016-1513: libreoffice - The Impress tool in Apache OpenOffice 4.1.2 and earlier allows remote attackers ... The Impress tool in Apache OpenOffice 4.1.2 and earlier allows remote attackers to cause a denial of service (out-of-bounds read or write) or execute arbitrary code via crafted MetaActions in an (1) ODP or (2) OTP file. Scope: local bookworm: resolved (fixed in 1:4.3.3-1) bullseye: resolved (fixed in 1:4.3.3-1) forky: resolved (fixed in 1:4.3.3-1) sid: resolved (f
debian
CVE-2015-5213P3MEDIUMCVSS 6.8fixed in libreoffice 1:5.0.1~rc1-1 (bookworm)2015
CVE-2015-5213 [MEDIUM] CVE-2015-5213: libreoffice - Integer overflow in LibreOffice before 4.4.5 and Apache OpenOffice before 4.1.2 ... Integer overflow in LibreOffice before 4.4.5 and Apache OpenOffice before 4.1.2 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via a long DOC file, which triggers a buffer overflow. Scope: local bookworm: resolved (fixed in 1:5.0.1~rc1-1) bullseye: resolved (fixed in 1:5.0.1~rc1-1
debian
CVE-2024-6472P3HIGHCVSS 7.8fixed in libreoffice 4:7.4.7-1+deb12u4 (bookworm)2024
CVE-2024-6472 [HIGH] CVE-2024-6472: libreoffice - Certificate Validation user interface in LibreOffice allows potential vulnerabil... Certificate Validation user interface in LibreOffice allows potential vulnerability. Signed macros are scripts that have been digitally signed by the developer using a cryptographic signature. When a document with a signed macro is opened a warning is displayed by LibreOffice before the macro is executed. Previously if verification failed the user could fail to un
debian
CVE-2018-10120P3HIGHCVSS 7.8fixed in libreoffice 1:6.0.2-1 (bookworm)2018
CVE-2018-10120 [HIGH] CVE-2018-10120: libreoffice - The SwCTBWrapper::Read function in sw/source/filter/ww8/ww8toolbar.cxx in LibreO... The SwCTBWrapper::Read function in sw/source/filter/ww8/ww8toolbar.cxx in LibreOffice before 5.4.6.1 and 6.x before 6.0.2.1 does not validate a customizations index, which allows remote attackers to cause a denial of service (heap-based buffer overflow with write access) or possibly have unspecified other impact via a crafted document that contains a certain Mic
debian
CVE-2015-5214P3MEDIUMCVSS 6.8fixed in libreoffice 1:5.0.1~rc2-1 (bookworm)2015
CVE-2015-5214 [MEDIUM] CVE-2015-5214: libreoffice - LibreOffice before 4.4.6 and 5.x before 5.0.1 and Apache OpenOffice before 4.1.2... LibreOffice before 4.4.6 and 5.x before 5.0.1 and Apache OpenOffice before 4.1.2 allows remote attackers to cause a denial of service (memory corruption and application crash) or execute arbitrary code via an index to a non-existent bookmark in a DOC file. Scope: local bookworm: resolved (fixed in 1:5.0.1~rc2-1) bullseye: resolved (fixed in 1:5.0.1~rc2-1) forky:
debian
CVE-2018-11790P3HIGHCVSS 7.8fixed in libreoffice 1:4.0.3-1 (bookworm)2018
CVE-2018-11790 [HIGH] CVE-2018-11790: libreoffice - When loading a document with Apache Open Office 4.1.5 and earlier with smaller e... When loading a document with Apache Open Office 4.1.5 and earlier with smaller end line termination than the operating system uses, the defect occurs. In this case OpenOffice runs into an Arithmetic Overflow at a string length calculation. Scope: local bookworm: resolved (fixed in 1:4.0.3-1) bullseye: resolved (fixed in 1:4.0.3-1) forky: resolved (fixed in 1:4.0
debian
Debian Libreoffice vulnerabilities | cvebase