Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 507
Alerts This Week
Warning Icon 1 507

Ubuntu 16.04 LTS: USN-3022-1 Critical: LibreOffice Crash Risk

ubuntu
Calendar Grey June 30, 2016
Scroller Ubuntu
Ubuntu Security Notice USN-3022-1 highlights a security flaw in LibreOffice that may lead to application crashes or potentially allow arbitrary code execution.
LibreOffice could be made to crash or run programs as your login if itopened a specially crafted file.

Summary

LibreOffice could be made to crash or run programs as your login if it

opened a specially crafted file.

Software Description:

- libreoffice: Office productivity suite

Details:

It was discovered that LibreOffice incorrectly handled RTF document files.

If a user were tricked into opening a specially crafted RTF document, a

remote attacker could cause LibreOffice to crash, and possibly execute

arbitrary code.

Update Instructions

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 16.04 LTS:
  libreoffice-core                1:5.1.4-0ubuntu1

Ubuntu 15.10:
  libreoffice-core                1:5.0.6-0ubuntu1

Ubuntu 12.04 LTS:
  libreoffice-core                1:3.5.7-0ubuntu11

After a standard system update you need to restart LibreOffice to make
all the necessary changes.

References

https://ubuntu.com/security/notices/USN-3022-1

CVE-2016-4324

Severity
critical
Lowest
Low
Medium
High
Critical

June 29, 2016

Package Information

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.