CVE-2014-9093
Publication date 26 November 2014
Last updated 24 July 2024
Ubuntu priority
LibreOffice before 4.3.5 allows remote attackers to cause a denial of service (invalid write operation and crash) and possibly execute arbitrary code via a crafted RTF file.
Status
Package | Ubuntu Release | Status |
---|---|---|
libreoffice | ||
14.04 LTS trusty |
Fixed 1:4.2.8-0ubuntu2
|
|
openoffice.org | ||
14.04 LTS trusty | Not in release | |
Notes
mdeslaur
code is different in 4.2 and earlier. Upstream has no patch for earlier releases. debian released 1:3.5.4+dfsg2-0+deb7u3 with backported patch.
References
Related Ubuntu Security Notices (USN)
- USN-2578-1
- LibreOffice vulnerabilities
- 27 April 2015