Bug 33528 - libreoffice new security issue CVE-2024-6472
Summary: libreoffice new security issue CVE-2024-6472
Status: RESOLVED FIXED
Alias: None
Product: Mageia
Classification: Unclassified
Component: Security (show other bugs)
Version: 9
Hardware: All Linux
Priority: Normal normal
Target Milestone: ---
Assignee: All Packagers
QA Contact: Sec team
URL: https://ubuntu.com/security/notices/U...
Whiteboard:
Keywords:
Depends on: 33449
Blocks:
  Show dependency treegraph
 
Reported: 2024-09-06 09:37 CEST by Nicolas Salguero
Modified: 2024-09-29 10:20 CEST (History)
2 users (show)

See Also:
Source RPM: libreoffice-7.6.7.2-1.1.mga9.src.rpm
CVE: CVE-2024-6472
Status comment: Patch available from Ubuntu


Attachments

Description Nicolas Salguero 2024-09-06 09:37:44 CEST
Ubuntu has issued an advisory on August 15:
https://ubuntu.com/security/notices/USN-6962-1
Comment 1 Nicolas Salguero 2024-09-06 09:38:57 CEST
See also:
https://www.libreoffice.org/about-us/security/advisories/cve-2024-6472/

Source RPM: (none) => libreoffice-7.6.7.2-1.1.mga9.src.rpm
CVE: (none) => CVE-2024-6472
Status comment: (none) => Patch available from Ubuntu

Comment 2 Marja Van Waes 2024-09-06 21:22:07 CEST
Assigning to our registered LibreOffice maintainer.

CC: (none) => marja11
URL: (none) => https://ubuntu.com/security/notices/USN-6962-1 https://www.libreoffice.org/about-us/security/advisories/cve-2024-6472/

Comment 3 Lewis Smith 2024-09-06 21:34:26 CEST
This page looks relevant:
https://bugs.launchpad.net/ubuntu/+source/libreoffice/+bug/2076130

I think this page:
https://launchpadlibrarian.net/743723142/libreoffice_7.3.7-0ubuntu0.22.04.6.diff
contains the patch to:
a/sfx2/source/doc/docmacromode.cxx b/sfx2/source/doc/docmacromode.cxx

Unsure who does LO now, so assigning globally, CC'ing tv.

CC: (none) => thierry.vignaud
Assignee: bugsquad => pkg-bugs

katnatek 2024-09-17 21:42:54 CEST

See Also: (none) => https://bugs.mageia.org/show_bug.cgi?id=33449

katnatek 2024-09-21 20:32:32 CEST

Blocks: (none) => 33449
See Also: https://bugs.mageia.org/show_bug.cgi?id=33449 => (none)

katnatek 2024-09-21 21:03:31 CEST

Blocks: 33449 => (none)
Depends on: (none) => 33449

Comment 4 Nicolas Salguero 2024-09-29 10:20:19 CEST
Fixed by bug 33449.

Status: NEW => RESOLVED
Resolution: (none) => FIXED


Note You need to log in before you can comment on or make changes to this bug.