Mageia alert MGASA-2016-0194 (libreoffice)
| From: | Mageia Updates <buildsystem-daemon@mageia.org> | |
| To: | updates-announce@ml.mageia.org | |
| Subject: | [updates-announce] MGASA-2016-0194: Updated libreoffice packages fix security vulnerabilities | |
| Date: | Sun, 22 May 2016 00:11:51 +0200 | |
| Message-ID: | <20160521221151.251A59F752@duvel.mageia.org> |
MGASA-2016-0194 - Updated libreoffice packages fix security vulnerabilities Publication date: 21 May 2016 URL: http://advisories.mageia.org/MGASA-2016-0194.html Type: security Affected Mageia releases: 5 CVE: CVE-2016-0794, CVE-2016-0795 Description: Updated libreoffice packages fix security vulnerabilities: The lwp filter in LibreOffice before 5.0.4 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted LotusWordPro (lwp) document (CVE-2016-0794). LibreOffice before 5.0.5 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted LwpTocSuperLayout record in a LotusWordPro (lwp) document (CVE-2016-0795). References: - https://bugs.mageia.org/show_bug.cgi?id=17789 - https://www.libreoffice.org/about-us/security/advisories/... - https://www.libreoffice.org/about-us/security/advisories/... - https://lists.fedoraproject.org/pipermail/package-announc... - http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-0794 - http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-0795 SRPMS: - 5/core/libreoffice-4.4.7.2-2.mga5
