USN-6789-1: LibreOffice vulnerability
28 May 2024
LibreOffice could be made to run programs when clicking a graphic.
Releases
Packages
- libreoffice - Office productivity suite
Details
Amel Bouziane-Leblond discovered that LibreOffice incorrectly handled
graphic on-click bindings. If a user were tricked into clicking a graphic
in a specially crafted document, a remote attacker could possibly run
arbitrary script.
Update instructions
The problem can be corrected by updating your system to the following package versions:
Ubuntu 24.04
Ubuntu 23.10
Ubuntu 22.04
Ubuntu 20.04
In general, a standard system update will make all the necessary changes.