Impact
LibreOffice imports PICT images that may be embedded in documents. When such an image contains a colour palette, the palette index stored in the image data is used without checking it against the number of palette entries. This allows the reader to access memory outside the palette bounds, potentially exposing sensitive data present in adjacent memory.
Affected Systems
LibreOffice from The Document Foundation, any version that currently supports PICT image import and has not yet incorporated the recent patch
Risk and Exploitability
The CVSS score of 5.4 indicates a moderate severity, with no EPSS data available and the vulnerability not listed in the CISA KEV catalog. An attacker would need to craft a malicious document containing a PICT image and then persuade a user to open it, typically via local or remote social engineering or a phishing attack. Once the document is loaded, the out‑of‑bounds read could leak memory material to the application, allowing access to proprietary or confidential data.
OpenCVE Enrichment