MGASA-2016-0246

Source
https://advisories.mageia.org/MGASA-2016-0246.html
Import Source
https://advisories.mageia.org/MGASA-2016-0246.json
JSON Data
https://api.test.osv.dev/v1/vulns/MGASA-2016-0246
Related
Published
2016-07-08T19:50:51Z
Modified
2016-07-08T19:38:47Z
Summary
Updated libreoffice packages fix security vulnerability
Details

Updated libreoffice packages fix security vulnerability:

Parsing the Rich Text Format character style index was insufficiently checked for validity. Documents can be constructed which dereference an iterator to the first entry of an empty STL container (CVE-2016-4324).

References
Credits

Affected packages

Mageia:5 / libreoffice

Package

Name
libreoffice
Purl
pkg:rpm/mageia/libreoffice?distro=mageia-5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.4.7.2-3.mga5

Ecosystem specific

{
    "section": "core"
}

Mageia:5 / librevenge

Package

Name
librevenge
Purl
pkg:rpm/mageia/librevenge?distro=mageia-5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.0.4-1.mga5

Ecosystem specific

{
    "section": "core"
}

Mageia:5 / libcdr

Package

Name
libcdr
Purl
pkg:rpm/mageia/libcdr?distro=mageia-5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.1.2-1.mga5

Ecosystem specific

{
    "section": "core"
}

Mageia:5 / libvisio

Package

Name
libvisio
Purl
pkg:rpm/mageia/libvisio?distro=mageia-5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.1.5-1.mga5

Ecosystem specific

{
    "section": "core"
}

Mageia:5 / libwpd

Package

Name
libwpd
Purl
pkg:rpm/mageia/libwpd?distro=mageia-5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.10.1-1.mga5

Ecosystem specific

{
    "section": "core"
}