Hash: SHA256

Package        : libreoffice
Version        : 1:3.5.4+dfsg2-0+deb7u9
CVE ID         : CVE-2017-3157 CVE-2017-7870

CVE-2017-3157

    Ben Hayak discovered that objects embedded in Writer and Calc
    documents may result in information disclosure. Please see
    https://www.libreoffice.org/about-us/security/advisories/cve-2017-3157/
    for additional information.

CVE-2017-7870

    An out-of-bounds write caused by a heap-based buffer overflow was
    found in the Polygon class.

For Debian 7 "Wheezy", these problems have been fixed in version
1:3.5.4+dfsg2-0+deb7u9.

We recommend that you upgrade your libreoffice packages.

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS

Debian LTS: DLA-910-1: libreoffice security update

April 23, 2017
CVE-2017-3157 Ben Hayak discovered that objects embedded in Writer and Calc documents may result in information disclosure

Summary

Ben Hayak discovered that objects embedded in Writer and Calc
documents may result in information disclosure. Please see
https://www.libreoffice.org/about-us/security/advisories/cve-2017-3157/
for additional information.

CVE-2017-7870

An out-of-bounds write caused by a heap-based buffer overflow was
found in the Polygon class.

For Debian 7 "Wheezy", these problems have been fixed in version
1:3.5.4+dfsg2-0+deb7u9.

We recommend that you upgrade your libreoffice packages.

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS


Severity
Package : libreoffice
Version : 1:3.5.4+dfsg2-0+deb7u9
CVE ID : CVE-2017-3157 CVE-2017-7870

Related News