Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.1.10.2019.0340
Category:Mageia Linux Local Security Checks
Title:Mageia: Security Advisory (MGASA-2019-0340)
Summary:The remote host is missing an update for the 'libreoffice' package(s) announced via the MGASA-2019-0340 advisory.
Description:Summary:
The remote host is missing an update for the 'libreoffice' package(s) announced via the MGASA-2019-0340 advisory.

Vulnerability Insight:
Updated libreoffice packages fix security vulnerabilities:

LibreOffice has a feature where documents can specify that pre-installed
scripts can be executed on various document events such as mouse-over, etc.
LibreOffice is typically also bundled with LibreLogo, a programmable turtle
vector graphics script, which can be manipulated into executing arbitrary
python commands. By using the document event feature to trigger LibreLogo
to execute python contained within a document a malicious document could be
constructed which would execute arbitrary python commands silently without
warning. In the fixed versions, LibreLogo cannot be called from a document
event handler (CVE-2019-9848).

LibreOffice has a 'stealth mode' in which only documents from locations
deemed 'trusted' are allowed to retrieve remote resources. This mode is
not the default mode, but can be enabled by users who want to disable
LibreOffice's ability to include remote resources within a document.
A flaw existed where bullet graphics were omitted from this protection
(CVE-2019-9849).

LibreOffice is typically bundled with LibreLogo, a programmable turtle
vector graphics script, which can execute arbitrary python commands
contained with the document it is launched from. LibreOffice also has a
feature where documents can specify that pre-installed scripts can be
executed on various document script events such as mouse-over, etc.
Protection was added, to address CVE-2019-9848, to block calling LibreLogo
from script event handers. However an insufficient url validation
vulnerability in LibreOffice allowed malicious to bypass that protection
and again trigger calling LibreLogo from script event handlers
(CVE-2019-9850).

LibreOffice is typically bundled with LibreLogo, a programmable turtle
vector graphics script, which can execute arbitrary python commands
contained with the document it is launched from. Protection was added, to
address CVE-2019-9848, to block calling LibreLogo from document event
script handers, e.g. mouse over. However LibreOffice also has a separate
feature where documents can specify that pre-installed scripts can be
executed on various global script events such as document-open, etc. In
the fixed versions, global script event handlers are validated equivalently
to document script event handlers (CVE-2019-9851).

LibreOffice has a feature where documents can specify that pre-installed
macros can be executed on various script events such as mouse-over,
document-open etc. Access is intended to be restricted to scripts under the
share/Scripts/python, user/Scripts/python sub-directories of the LibreOffice
install. Protection was added, to address CVE-2018-16858, to avoid a
directory traversal attack where scripts in arbitrary locations on the file
system could be executed. However this new protection could be bypassed by
a URL encoding attack. In the fixed versions, the parsed url describing ... [Please see the references for more information on the vulnerabilities]

Affected Software/OS:
'libreoffice' package(s) on Mageia 7.

Solution:
Please install the updated package(s).

CVSS Score:
7.5

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:P/A:P

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2019-9848
BugTraq ID: 109374
http://www.securityfocus.com/bid/109374
Bugtraq: 20190815 [SECURITY] [DSA 4501-1] libreoffice security update (Google Search)
https://seclists.org/bugtraq/2019/Aug/28
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PMEGUWMWORC3DOVEHVXLFT3A5RSCMLBH/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/XPTZJCNN52VNGSVC5DFKVW3EDMRDWKMP/
https://security.gentoo.org/glsa/201908-13
https://lists.debian.org/debian-lts-announce/2019/10/msg00005.html
SuSE Security Announcement: openSUSE-SU-2019:2057 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00006.html
SuSE Security Announcement: openSUSE-SU-2019:2183 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00067.html
https://usn.ubuntu.com/4063-1/
Common Vulnerability Exposure (CVE) ID: CVE-2019-9849
Common Vulnerability Exposure (CVE) ID: CVE-2019-9850
Debian Security Information: DSA-4501 (Google Search)
https://www.debian.org/security/2019/dsa-4501
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WVSDPZJG3UA43X3JXRHJAWXLDZEW77LM/
https://usn.ubuntu.com/4102-1/
Common Vulnerability Exposure (CVE) ID: CVE-2019-9851
http://packetstormsecurity.com/files/154168/LibreOffice-Macro-Python-Code-Execution.html
Common Vulnerability Exposure (CVE) ID: CVE-2019-9852
Bugtraq: 20190910 [SECURITY] [DSA 4519-1] libreoffice security update (Google Search)
https://seclists.org/bugtraq/2019/Sep/17
https://www.libreoffice.org/about-us/security/advisories/CVE-2019-9852
Common Vulnerability Exposure (CVE) ID: CVE-2019-9853
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/KQGBRSD73KTDZ2MPAOL7FBWO3SQVYE5B/
http://seclists.org/fulldisclosure/2020/Feb/23
http://packetstormsecurity.com/files/156474/Open-Xchange-App-Suite-Documents-Server-Side-Request-Forgery.html
https://lists.apache.org/thread.html/3a5570ca5cd14ad08e24684c71cfeff3a507f108fe3cf30ba4f58226@%3Ccommits.openoffice.apache.org%3E
https://lists.apache.org/thread.html/4ae0e6e52600f408d943ded079d314733ce188b04b04471464f89c4f@%3Ccommits.openoffice.apache.org%3E
https://lists.apache.org/thread.html/7394e6b5f78a878bd0c44e9bc9adf90b8cdf49e9adc0f287145aba9b@%3Ccommits.openoffice.apache.org%3E
https://lists.apache.org/thread.html/a5231ad45b030b54828c7b0b62a7e7d4b48481c7cb83ff628e07fa43@%3Ccommits.openoffice.apache.org%3E
https://lists.apache.org/thread.html/9dc85d9937ad7f101047c53f78c00e8ceb135eaeff7dcf4724b46f2c@%3Ccommits.openoffice.apache.org%3E
https://lists.apache.org/thread.html/27339e8a9a1e9bb47fbdb939b338256d0356250a1974aaf4d774f683@%3Ccommits.openoffice.apache.org%3E
https://lists.apache.org/thread.html/19c917f7c8a0d8f62142046fabfe3e2c7d6091ef1f92b99c6e79e24e@%3Ccommits.openoffice.apache.org%3E
https://lists.apache.org/thread.html/a540d1b6f9a7ebb206adba02839f654a6ee63a7b0976f559a847e49a@%3Ccommits.openoffice.apache.org%3E
https://lists.apache.org/thread.html/70da9481dca267405e1d79e53942264765ef3f55c9a563c3737e3926@%3Ccommits.openoffice.apache.org%3E
https://lists.apache.org/thread.html/306a374361891eb17c6cffc99c3d7be1d3152a99c839d4231edc1631@%3Ccommits.openoffice.apache.org%3E
https://lists.apache.org/thread.html/ca216900abd846f0220fe18b95f9f787bdbe0e87fa4eee822073cd69@%3Ccommits.openoffice.apache.org%3E
SuSE Security Announcement: openSUSE-SU-2019:2709 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00040.html
Common Vulnerability Exposure (CVE) ID: CVE-2019-9854
Debian Security Information: DSA-4519 (Google Search)
https://www.debian.org/security/2019/dsa-4519
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/XQKKOIY2DMZCXJINOLIQXD2NWISDKK3N/
SuSE Security Announcement: openSUSE-SU-2019:2361 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00055.html
https://usn.ubuntu.com/4138-1/
CopyrightCopyright (C) 2022 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.