Ubuntu Security Notice USN-6144-1

Discussion in 'News Aggregator' started by Packet Storm, 8 Jun 2023.

  1. Packet Storm

    Packet Storm Guest

    Ubuntu Security Notice 6144-1 - It was discovered that LibreOffice did not properly validate the number of parameters passed to the formula interpreter, leading to an array index underflow attack. If a user were tricked into opening a specially crafted spreadsheet file, an attacker could possibly use this issue to execute arbitrary code. Amel Bouziane-Leblond discovered that LibreOffice did not prompt the user before loading the host document inside an IFrame. If a user were tricked into opening a specially crafted input file, an attacker could possibly use this issue to cause information disclosure or execute arbitrary code.

    Continue reading...
     

Share This Page

Loading...