CVE-2012-5639
Published: 20 December 2019
LibreOffice and OpenOffice automatically open embedded content
Priority
CVSS 3 base score: 6.5
Status
Package | Release | Status |
---|---|---|
libreoffice Launchpad, Ubuntu, Debian |
Upstream |
Needs triage
|
Ubuntu 14.04 ESM (Trusty Tahr) |
Does not exist
(trusty was not-affected [1:4.2.6.3-0ubuntu1])
|
|
openoffice.org Launchpad, Ubuntu, Debian |
Upstream |
Needs triage
|
Ubuntu 14.04 ESM (Trusty Tahr) |
Does not exist
|
Notes
Author | Note |
---|---|
jdstrand | seems more like a feature request. LibreOffice prompts the user saying that the document contains links to external data and asks if the user wants to refresh them. The prompt does not say what the files are. The external content is fetched the first time without prompting. |
mdeslaur | See http://whatofhow.wordpress.com/2013/12/02/stealth-mode/ for improvement that went into 4.2. We will not be fixing this in precise, marking as ignored |
References
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-5639
- http://www.openwall.com/lists/oss-security/2012/12/13
- http://www.openwall.com/lists/oss-security/2012/12/13/10
- NVD
- Launchpad
- Debian