Multiple Vulnerabilities in LibreOffice
LibreOffice is affected by multiple vulnerabilities that could allow a local attacker to execute arbitrary code, manipulate data, or disclose sensitive information.
The Document Foundation has disclosed multiple security vulnerabilities affecting LibreOffice. These flaws allow a local attacker to perform various malicious actions, including information disclosure, unauthorized data manipulation, and arbitrary code execution. These vulnerabilities typically require the attacker to convince a user to open a specially crafted file or interact with a malicious document. The impact is significant for environments where users frequently handle untrusted documents, as successful exploitation can lead to a full compromise of the user workstation context. Organizations should ensure that LibreOffice is updated to the latest available version provided by their distribution or vendor to mitigate these risks.
Mitigations
Update LibreOffice to the latest stable release.
LibreOffice local code execution vulnerabilities