Unchecked script execution in Graphic on-click binding in affected LibreOffice versions allows an attacker to create a document which without prompt will execute scripts built-into LibreOffice on clicking a graphic. Such scripts were previously deemed trusted but are now deemed untrusted.
Metrics
Affected Vendors & Products
References
History
Tue, 12 Nov 2024 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-94 | |
Metrics |
cvssV3_1
|
cvssV3_1
|
Fri, 20 Sep 2024 10:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Fri, 20 Sep 2024 10:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Unchecked script execution in Graphic on-click binding in affected LibreOffice versions allows an attacker to create a document which without prompt will execute scripts built-into LibreOffice on clicking a graphic. Such scripts were previously deemed trusted but are now deemed untrusted. | Unchecked script execution in Graphic on-click binding in affected LibreOffice versions allows an attacker to create a document which without prompt will execute scripts built-into LibreOffice on clicking a graphic. Such scripts were previously deemed trusted but are now deemed untrusted. |
Weaknesses | CWE-356 |
MITRE
Status: PUBLISHED
Assigner: Document Fdn.
Published: 2024-05-14T20:19:51.426Z
Updated: 2024-11-12T20:14:27.961Z
Reserved: 2024-03-28T15:28:21.866Z
Link: CVE-2024-3044
Vulnrichment
Updated: 2024-08-01T19:32:42.580Z
NVD
Status : Awaiting Analysis
Published: 2024-05-14T21:15:12.627
Modified: 2024-11-21T09:28:45.103
Link: CVE-2024-3044
Redhat