Advisories ยป MGASA-2019-0102

Updated libreoffice packages fix security vulnerability

Publication date: 22 Feb 2019
Modification date: 27 Jun 2019
Type: security
Affected Mageia releases : 6
CVE: CVE-2018-16858

Description

Alex Infuehr discovered a directory traversal vulnerability which could
result in the execution of Python script code when opening a malformed
document (CVE-2018-16858).

The libreoffice package has been updated to version 6.1.5.2, fixing this
issue, and including several other bug fixes and enhancements.  Several
supporting library packages have been updated as well.

Here's the list of improvements from 5.3 to 6.1:
https://wiki.documentfoundation.org/ReleaseNotes/5.4
https://wiki.documentfoundation.org/ReleaseNotes/6.0
https://wiki.documentfoundation.org/ReleaseNotes/6.1
                

References

SRPMS

6/core