Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
This update for libreoffice fixes the following issues:
Update to LibreOffice 26.2.5.1.
Security issues fixed:
* CVE-2026-4430: out-of-bounds write via crafted OOXML documents with
mismatched encryption salt parameters (bsc#1264357).
* CVE-2026-6039: denial of service via specially crafted DXF polyline import
(bsc#1268494).
* CVE-2026-6040: heap use-after-free when importing the blank-width characters
of an ODF number format (bsc#1268527).
* CVE-2026-6045: heap buffer overflow via crafted EMF+ graphics import
(bsc#1268497).
* CVE-2026-6047: denial of service via heap buffer overflow in OOXML document
processing (bsc#1268504).
* CVE-2026-8356: denial of service via a specially crafted PPT file
(bsc#1268522).
* CVE-2026-8357: heap buffer overflow in Calc formula compilation
(bsc#1268528).
* CVE-2026-8358: heap buffer overflow in spreadsheet tracked-changes import
(bsc#1268529).
* CVE-2026-50593: graphite2: out-of-bounds write via...
Read the Full Advisory## Patch Instructions:
To install this SUSE update use the SUSE recommended installation methods like
YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
* SUSE Package Hub 15 15-SP7
zypper in -t patch SUSE-SLE-Module-Packagehub-Subpackages-15-SP7-2026-3140=1
* openSUSE Leap 15.5
zypper in -t patch SUSE-2026-3140=1
* SUSE Linux Enterprise Workstation Extension 15 SP7
zypper in -t patch SUSE-SLE-Product-WE-15-SP7-2026-3140=1
* SUSE Package Hub 15 15-SP7 (noarch)
* libreoffice-l10n-sa_IN-26.2.5.1-150500.20.37.1
* libreoffice-l10n-ne-26.2.5.1-150500.20.37.1
* libreoffice-l10n-fr-26.2.5.1-150500.20.37.1
* libreoffice-l10n-et-26.2.5.1-150500.20.37.1
* libreoffice-l10n-sq-26.2.5.1-150500.20.37.1
* libreoffice-l10n-as-26.2.5.1-150500.20.37.1
* libreoffice-l10n-lo-26.2.5.1-150500.20.37.1
* libreoffice-l10n-ug-26.2.5.1-150500.20.37.1
* libreoffice-l10n-om-26.2.5.1-150500.20.37.1
* libreoffice-l10n-kab-26.2.5.1-150500.20.37.1
* libreoffice-l10n-sd-26.2.5.1-150500.20.37.1
* libreoffice-l10n-sl-26.2.5.1-150500.20.37.1
* libreoffice-l10n-lb-26.2.5.1-150500.20.37.1
* libreoffice-l10n-kok-26.2.5.1-150500.20.37.1
* libreoffice-l10n-mk-26.2.5.1-150500.20.37.1
* libreoffice-l10n-en_ZA-26.2.5.1-150500.20.37.1
* libreoffice-l10n-pl-26.2.5.1-150500.20.37.1
* libreoffice-l10n-brx-26.2.5.1-150500.20.37.1
* libreoffice-l10n-be-26.2.5.1-150500.20.37.1
* libreoffice-l10n-kn-26.2.5.1-150500.20.37.1
* libreoffice-l10n-tt-26.2.5.1-150500.20.37.1
*...
Read the Full Advisory* bsc#1264357
* bsc#1267735
* bsc#1268494
* bsc#1268497
* bsc#1268504
* bsc#1268522
* bsc#1268527
* bsc#1268528
* bsc#1268529
* jsc#PED-16098
## References:
* https://www.suse.com/security/cve/CVE-2026-4430.html
* https://www.suse.com/security/cve/CVE-2026-50593.html
* https://www.suse.com/security/cve/CVE-2026-6039.html
* https://www.suse.com/security/cve/CVE-2026-6040.html
* https://www.suse.com/security/cve/CVE-2026-6045.html
* https://www.suse.com/security/cve/CVE-2026-6047.html
* https://www.suse.com/security/cve/CVE-2026-8356.html
* https://www.suse.com/security/cve/CVE-2026-8357.html
* https://www.suse.com/security/cve/CVE-2026-8358.html
* https://bugzilla.suse.com/show_bug.cgi?id=1264357
* https://bugzilla.suse.com/show_bug.cgi?id=1267735
* https://bugzilla.suse.com/show_bug.cgi?id=1268494
* https://bugzilla.suse.com/show_bug.cgi?id=1268497
* https://bugzilla.suse.com/show_bug.cgi?id=1268504
* https://bugzilla.suse.com/show_bug.cgi?id=1268522
* https://bugzilla.suse.com/show_bug.cgi?id=1268527
*...
Read the Full AdvisoryGet the latest Linux and open source security news straight to your inbox.