Updated libreoffice packages fix security vulnerabilities
Publication date: 21 May 2016Modification date: 21 May 2016
Type: security
Affected Mageia releases : 5
CVE: CVE-2016-0794 , CVE-2016-0795
Description
Updated libreoffice packages fix security vulnerabilities: The lwp filter in LibreOffice before 5.0.4 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted LotusWordPro (lwp) document (CVE-2016-0794). LibreOffice before 5.0.5 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted LwpTocSuperLayout record in a LotusWordPro (lwp) document (CVE-2016-0795).
References
- https://bugs.mageia.org/show_bug.cgi?id=17789
- https://www.libreoffice.org/about-us/security/advisories/cve-2016-0794/
- https://www.libreoffice.org/about-us/security/advisories/cve-2016-0795/
- https://lists.fedoraproject.org/pipermail/package-announce/2016-February/178036.html
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-0794
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-0795
SRPMS
5/core
- libreoffice-4.4.7.2-2.mga5