FlawAtlas
Search the atlas
SUSE-SU-2016:1728-1 Not scored

Security update for LibreOffice

LibreOffice was updated to version 5.1.3.2, bringing many new features and bug fixes. Two security issues have been fixed: - CVE-2016-0795: LibreOffice allowed remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted LwpTocSuperLayout record in a LotusWordPro (lwp) document. - CVE-2016-0794: The lwp filter in LibreOffice allowed remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted LotusWordPro (lwp) document. A comprehensive list of new features and improvements in this release is provided by the Document Foundation at https://wiki.documentfoundation.org/ReleaseNotes/5.1 .

Exploit probability Not scored
Published July 1, 2016
Required by Not available
Last source change May 2, 2025

02 / AFFECTED SOFTWARE

Affected packages

SUSE:Linux Enterprise Workstation Extension 12 cmis-client
SUSE:Linux Enterprise Software Development Kit 12 hunspell
SUSE:Linux Enterprise Software Development Kit 12 hyphen
SUSE:Linux Enterprise Software Development Kit 12 SP1 hyphen
SUSE:Linux Enterprise Desktop 12 hyphen
SUSE:Linux Enterprise Workstation Extension 12 openCOLLADA
SUSE:Linux Enterprise Desktop 12 SP1 boost
SUSE:Linux Enterprise Software Development Kit 12 SP1 libvisio
SUSE:Linux Enterprise Desktop 12 boost
SUSE:Linux Enterprise Desktop 12 SP1 hunspell
SUSE:Linux Enterprise Software Development Kit 12 SP1 libixion
SUSE:Linux Enterprise Desktop 12 libreoffice
SUSE:Linux Enterprise Desktop 12 SP1 libixion
SUSE:Linux Enterprise Software Development Kit 12 SP1 libetonyek
SUSE:Linux Enterprise Software Development Kit 12 SP1 liborcus
SUSE:Linux Enterprise Desktop 12 cmis-client
SUSE:Linux Enterprise Workstation Extension 12 SP1 libwps
SUSE:Linux Enterprise Software Development Kit 12 boost
SUSE:Linux Enterprise Workstation Extension 12 boost
SUSE:Linux Enterprise Desktop 12 SP1 myspell-dictionaries
SUSE:Linux Enterprise Desktop 12 SP1 libreoffice
SUSE:Linux Enterprise Software Development Kit 12 SP1 boost
SUSE:Linux Enterprise Workstation Extension 12 SP1 libvisio
SUSE:Linux Enterprise Workstation Extension 12 SP1 libetonyek
SUSE:Linux Enterprise Desktop 12 SP1 hyphen
SUSE:Linux Enterprise Desktop 12 SP1 openCOLLADA
SUSE:Linux Enterprise Workstation Extension 12 libetonyek
SUSE:Linux Enterprise Software Development Kit 12 SP1 cmis-client
SUSE:Linux Enterprise Workstation Extension 12 SP1 libixion
SUSE:Linux Enterprise Workstation Extension 12 libvisio
SUSE:Linux Enterprise Desktop 12 libwps
SUSE:Linux Enterprise Workstation Extension 12 SP1 myspell-dictionaries
SUSE:Linux Enterprise Desktop 12 liborcus
SUSE:Linux Enterprise Workstation Extension 12 myspell-dictionaries
SUSE:Linux Enterprise Workstation Extension 12 libreoffice
SUSE:Linux Enterprise Workstation Extension 12 SP1 hyphen
SUSE:Linux Enterprise Workstation Extension 12 SP1 liborcus
SUSE:Linux Enterprise Software Development Kit 12 liborcus
SUSE:Linux Enterprise Workstation Extension 12 hyphen
SUSE:Linux Enterprise Workstation Extension 12 SP1 libreoffice
SUSE:Linux Enterprise Desktop 12 libetonyek
SUSE:Linux Enterprise Software Development Kit 12 libetonyek
SUSE:Linux Enterprise Software Development Kit 12 cmis-client
SUSE:Linux Enterprise Workstation Extension 12 libixion
SUSE:Linux Enterprise Desktop 12 SP1 libetonyek
SUSE:Linux Enterprise Desktop 12 libvisio
SUSE:Linux Enterprise Desktop 12 SP1 libwps
SUSE:Linux Enterprise Workstation Extension 12 SP1 openCOLLADA
SUSE:Linux Enterprise Desktop 12 openCOLLADA
SUSE:Linux Enterprise Software Development Kit 12 libvisio
SUSE:Linux Enterprise Desktop 12 libixion
SUSE:Linux Enterprise Desktop 12 SP1 libvisio
SUSE:Linux Enterprise Software Development Kit 12 SP1 hunspell
SUSE:Linux Enterprise Software Development Kit 12 libixion
SUSE:Linux Enterprise Workstation Extension 12 liborcus
SUSE:Linux Enterprise Workstation Extension 12 libwps
SUSE:Linux Enterprise Desktop 12 SP1 cmis-client
SUSE:Linux Enterprise Workstation Extension 12 SP1 cmis-client
SUSE:Linux Enterprise Desktop 12 hunspell
SUSE:Linux Enterprise Desktop 12 SP1 liborcus
SUSE:Linux Enterprise Desktop 12 myspell-dictionaries
SUSE:Linux Enterprise Software Development Kit 12 SP1 libwps
SUSE:Linux Enterprise Software Development Kit 12 libwps
SUSE:Linux Enterprise Workstation Extension 12 SP1 boost

03 / CONNECTIONS

Connected vulnerabilities

04 / EVIDENCE

Source records

Open Source Vulnerabilities SUSE-SU-2016:1728-1

LibreOffice was updated to version 5.1.3.2, bringing many new features and bug fixes. Two security issues have been fixed: - CVE-2016-0795: LibreOffice allowed remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted LwpTocSuperLayout record in a LotusWordPro (lwp) document. - CVE-2016-0794: The lwp filter in LibreOffice allowed remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted LotusWordPro (lwp) document. A comprehensive list of new features and improvements in this release is provided by the Document Foundation at https://wiki.documentfoundation.org/ReleaseNotes/5.1 .

View original source

05 / REFERENCES

Further evidence