LibreOffice could be made to crash or run programs as your login if it
opened a specially crafted file.
Software Description:
- libreoffice: Office productivity suite
Details:
Duc Anh Nguyen discovered that LibreOffice incorrectly handled mismatched
encryption salt parameters in crafted OOXML documents. An attacker could
use this issue to cause LibreOffice to crash, resulting in a denial of
service, or possibly execute arbitrary code.
The problem can be corrected by updating your system to the following package versions: Ubuntu 26.04 LTS libreoffice 4:26.2.3.2-0ubuntu0.26.04.1 Ubuntu 25.10 libreoffice 4:25.8.7-0ubuntu0.25.10.1 This update uses a new upstream release, which includes additional bug fixes. In general, a standard system update will make all the necessary changes.
https://ubuntu.com/security/notices/USN-8352-1
CVE-2026-4430
Get the latest Linux and open source security news straight to your inbox.