LibreOffice before 4.4.5 and Apache OpenOffice before 4.1.2 uses the stored LinkUpdateMode configuration information in OpenDocument Format files and templates when handling links, which might allow remote attackers to obtain sensitive information via a crafted document, which embeds data from local files into (1) Calc or (2) Writer.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2015-11-10T16:00:00

Updated: 2024-08-06T06:18:12.023Z

Reserved: 2015-06-12T00:00:00

Link: CVE-2015-4551

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2015-11-10T17:59:00.117

Modified: 2022-02-07T16:30:39.040

Link: CVE-2015-4551

cve-icon Redhat

Severity : Moderate

Publid Date: 2015-11-04T00:00:00Z

Links: CVE-2015-4551 - Bugzilla