KLA11519
Multiple vulnerabilities in LibreOffice
Updated: 06/18/2020
Detect date
?
07/16/2019
Severity
?
Critical
Description

Multiple vulnerabilities were found in LibreOffice. Malicious users can exploit these vulnerabilities to execute arbitrary code, bypass security restrictions.

Below is a complete list of vulnerabilities:

  1. An improper script handling issue can be exploited remotely via a specially crafted file to execute arbitrary code;
  2. An improper stealth mode handling issue can be exploited to bypass security restrictions.
Exploitation

Malware exists for this vulnerability. Usually such malware is classified as Exploit. More details.

Affected products

LibreOffice earlier than 6.2.5

Solution

Update to the latest version
Download LibreOffice

Original advisories

CVE-2019-9848 LibreLogo arbitrary script execution
CVE-2019-9849 remote bullet graphics retrieved in ‘stealth mode’

Impacts
?
ACE 
[?]

SB 
[?]
Related products
LibreOffice
CVE-IDS
?
CVE-2019-98480.0Unknown
CVE-2019-98490.0Unknown