Lucene search

K
debianDebianDEBIAN:BSA-076:830BE
HistoryAug 23, 2012 - 10:51 a.m.

[BSA 076] Security update for libreoffice

2012-08-2310:51:07
lists.debian.org
18

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

6.8 Medium

AI Score

Confidence

Low

0.047 Low

EPSS

Percentile

92.7%

Rene Engelhard uploaded new packages for libreoffice which fixed
the following security problems:

CVE-2012-1149
multiple heap-based buffer overflows in OpenOffice.orgs
XML manifest encryption tag parsing code

For the squeeze-backports distribution the problems have been fixed in
version 1:3.5.4-7~bpo60+1.

Attachment:
signature.asc
Description: Digital signature

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

6.8 Medium

AI Score

Confidence

Low

0.047 Low

EPSS

Percentile

92.7%