![]() |
Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | ||
Test ID: | 1.3.6.1.4.1.25623.1.0.856557 |
Category: | openSUSE Local Security Checks |
Title: | openSUSE Security Advisory (SUSE-SU-2024:3577-1) |
Summary: | The remote host is missing an update for the 'libreoffice' package(s) announced via the SUSE-SU-2024:3577-1 advisory. |
Description: | Summary: The remote host is missing an update for the 'libreoffice' package(s) announced via the SUSE-SU-2024:3577-1 advisory. Vulnerability Insight: This update for libreofficefixes the following issues: libreoffice was updated to version 24.8.1.2 (jsc#PED-10362): - Release notes: * [link moved to references] and * [link moved to references] and * [link moved to references] - Security issues fixed: * CVE-2024-526: Fixed TLS certificates are not properly verified when utilizing LibreOfficeKit (bsc#1226975) - Other bugs fixed: * Use system curl instead of the bundled one on systems greater than or equal to SLE15 (bsc#1229589) * Use the new clucene function, which makes index files reproducible (bsc#1047218) * Support firebird database with new package `libreoffice-base-drivers-firebird` in Package Hub and openSUSE Leap (bsc#1225597) - Update bundled dependencies: * Java-Websocket updated from 1.5.4 to 1.5.6 * boost updated from 1.82.0 to 1.85.0 * curl updated from 8.7.1 to 8.9.1 * fontconfig updated from 2.14.2 to 2.15.0 * freetype updated from 2.13.0 to 2.13.2 * harfbuzz updated from 8.2.2 to 8.5.0 * icu4c-data updated from 73.2 to 74.2 * icu4c-src updated from 73.2 to 74.2 * libassuan updated from 2.5.7 to 3.0.1 * libcmis updated from 0.6.1 to 0.6.2 * libgpg-error updated from 1.48 to 1.50 * pdfium updated from 6179 to 6425 * poppler updated from 23.09.0 to 24.08.0 * tiff updated from 4.6.0 to 4.6.0t Affected Software/OS: 'libreoffice' package(s) on openSUSE Leap 15.5, openSUSE Leap 15.6. Solution: Please install the updated package(s). CVSS Score: 10.0 CVSS Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C |
Cross-Ref: |
Common Vulnerability Exposure (CVE) ID: CVE-2024-0526 https://note.zhaoj.in/share/Zezf8fmoq7lk https://vuldb.com/?ctiid.250696 https://vuldb.com/?id.250696 Common Vulnerability Exposure (CVE) ID: CVE-2024-5261 https://www.libreoffice.org/about-us/security/advisories/cve-2024-5261 |
Copyright | Copyright (C) 2024 Greenbone AG |
This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit. To run a free test of this vulnerability against your system, register below. |