Login
Newsletter
Werbung

Sicherheit: Ausführen beliebiger Kommandos in LibreOffice
Aktuelle Meldungen Distributionen
Name: Ausführen beliebiger Kommandos in LibreOffice
ID: SUSE-SU-2020:0121-1
Distribution: SUSE
Plattformen: SUSE Linux Enterprise Module for Open Buildservice Development Tools 15-SP1, SUSE Linux Enterprise Workstation Extension 15-SP1
Datum: Fr, 17. Januar 2020, 13:28
Referenzen: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-9853
Applikationen: LibreOffice

Originalnachricht


SUSE Security Update: Security update for LibreOffice
______________________________________________________________________________

Announcement ID: SUSE-SU-2020:0121-1
Rating: moderate
References: #1061210 #1144522 #1152684
Cross-References: CVE-2019-9853
Affected Products:
SUSE Linux Enterprise Workstation Extension 15-SP1
SUSE Linux Enterprise Module for Open Buildservice
Development Tools 15-SP1
______________________________________________________________________________

An update that solves one vulnerability and has two fixes
is now available.

Description:

This update libreoffice to version 6.3.3 fixes the following issues:

LibreOffice was updated to 6.3.3 (jsc#SLE-8705), bringing many bug and
stability fixes.

More information for the 6.3 release at:
https://wiki.documentfoundation.org/ReleaseNotes/6.3

Security issue fixed:

- CVE-2019-9853: Fixed an issue where by executing macros, the security
settings could have been bypassed (bsc#1152684).

Other issues addressed:

- Dropped disable-kde4 switch, since it is no longer known by configure
- Disabled gtk2 because it will be removed in future releases
- librelogo is now a standalone sub-package (bsc#1144522).
- Partial fixes for an issue where Table(s) from DOCX showed wrong
position or color (bsc#1061210).


Patch Instructions:

To install this SUSE Security Update use the SUSE recommended installation
methods
like YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

- SUSE Linux Enterprise Workstation Extension 15-SP1:

zypper in -t patch SUSE-SLE-Product-WE-15-SP1-2020-121=1

- SUSE Linux Enterprise Module for Open Buildservice Development Tools
15-SP1:

zypper in -t patch
SUSE-SLE-Module-Development-Tools-OBS-15-SP1-2020-121=1



Package List:

- SUSE Linux Enterprise Workstation Extension 15-SP1 (noarch):

libreoffice-branding-upstream-6.3.3.2-8.13.1
libreoffice-icon-themes-6.3.3.2-8.13.1
libreoffice-l10n-af-6.3.3.2-8.13.1
libreoffice-l10n-ar-6.3.3.2-8.13.1
libreoffice-l10n-as-6.3.3.2-8.13.1
libreoffice-l10n-bg-6.3.3.2-8.13.1
libreoffice-l10n-bn-6.3.3.2-8.13.1
libreoffice-l10n-br-6.3.3.2-8.13.1
libreoffice-l10n-ca-6.3.3.2-8.13.1
libreoffice-l10n-cs-6.3.3.2-8.13.1
libreoffice-l10n-cy-6.3.3.2-8.13.1
libreoffice-l10n-da-6.3.3.2-8.13.1
libreoffice-l10n-de-6.3.3.2-8.13.1
libreoffice-l10n-dz-6.3.3.2-8.13.1
libreoffice-l10n-el-6.3.3.2-8.13.1
libreoffice-l10n-en-6.3.3.2-8.13.1
libreoffice-l10n-eo-6.3.3.2-8.13.1
libreoffice-l10n-es-6.3.3.2-8.13.1
libreoffice-l10n-et-6.3.3.2-8.13.1
libreoffice-l10n-eu-6.3.3.2-8.13.1
libreoffice-l10n-fa-6.3.3.2-8.13.1
libreoffice-l10n-fi-6.3.3.2-8.13.1
libreoffice-l10n-fr-6.3.3.2-8.13.1
libreoffice-l10n-ga-6.3.3.2-8.13.1
libreoffice-l10n-gl-6.3.3.2-8.13.1
libreoffice-l10n-gu-6.3.3.2-8.13.1
libreoffice-l10n-he-6.3.3.2-8.13.1
libreoffice-l10n-hi-6.3.3.2-8.13.1
libreoffice-l10n-hr-6.3.3.2-8.13.1
libreoffice-l10n-hu-6.3.3.2-8.13.1
libreoffice-l10n-it-6.3.3.2-8.13.1
libreoffice-l10n-ja-6.3.3.2-8.13.1
libreoffice-l10n-kk-6.3.3.2-8.13.1
libreoffice-l10n-kn-6.3.3.2-8.13.1
libreoffice-l10n-ko-6.3.3.2-8.13.1
libreoffice-l10n-lt-6.3.3.2-8.13.1
libreoffice-l10n-lv-6.3.3.2-8.13.1
libreoffice-l10n-mai-6.3.3.2-8.13.1
libreoffice-l10n-ml-6.3.3.2-8.13.1
libreoffice-l10n-mr-6.3.3.2-8.13.1
libreoffice-l10n-nb-6.3.3.2-8.13.1
libreoffice-l10n-nl-6.3.3.2-8.13.1
libreoffice-l10n-nn-6.3.3.2-8.13.1
libreoffice-l10n-nr-6.3.3.2-8.13.1
libreoffice-l10n-nso-6.3.3.2-8.13.1
libreoffice-l10n-or-6.3.3.2-8.13.1
libreoffice-l10n-pa-6.3.3.2-8.13.1
libreoffice-l10n-pl-6.3.3.2-8.13.1
libreoffice-l10n-pt_BR-6.3.3.2-8.13.1
libreoffice-l10n-pt_PT-6.3.3.2-8.13.1
libreoffice-l10n-ro-6.3.3.2-8.13.1
libreoffice-l10n-ru-6.3.3.2-8.13.1
libreoffice-l10n-si-6.3.3.2-8.13.1
libreoffice-l10n-sk-6.3.3.2-8.13.1
libreoffice-l10n-sl-6.3.3.2-8.13.1
libreoffice-l10n-sr-6.3.3.2-8.13.1
libreoffice-l10n-ss-6.3.3.2-8.13.1
libreoffice-l10n-st-6.3.3.2-8.13.1
libreoffice-l10n-sv-6.3.3.2-8.13.1
libreoffice-l10n-ta-6.3.3.2-8.13.1
libreoffice-l10n-te-6.3.3.2-8.13.1
libreoffice-l10n-th-6.3.3.2-8.13.1
libreoffice-l10n-tn-6.3.3.2-8.13.1
libreoffice-l10n-tr-6.3.3.2-8.13.1
libreoffice-l10n-ts-6.3.3.2-8.13.1
libreoffice-l10n-uk-6.3.3.2-8.13.1
libreoffice-l10n-ve-6.3.3.2-8.13.1
libreoffice-l10n-xh-6.3.3.2-8.13.1
libreoffice-l10n-zh_CN-6.3.3.2-8.13.1
libreoffice-l10n-zh_TW-6.3.3.2-8.13.1
libreoffice-l10n-zu-6.3.3.2-8.13.1

- SUSE Linux Enterprise Workstation Extension 15-SP1 (x86_64):

libreoffice-6.3.3.2-8.13.1
libreoffice-base-6.3.3.2-8.13.1
libreoffice-base-debuginfo-6.3.3.2-8.13.1
libreoffice-base-drivers-postgresql-6.3.3.2-8.13.1
libreoffice-base-drivers-postgresql-debuginfo-6.3.3.2-8.13.1
libreoffice-calc-6.3.3.2-8.13.1
libreoffice-calc-debuginfo-6.3.3.2-8.13.1
libreoffice-calc-extensions-6.3.3.2-8.13.1
libreoffice-debuginfo-6.3.3.2-8.13.1
libreoffice-debugsource-6.3.3.2-8.13.1
libreoffice-draw-6.3.3.2-8.13.1
libreoffice-draw-debuginfo-6.3.3.2-8.13.1
libreoffice-filters-optional-6.3.3.2-8.13.1
libreoffice-gnome-6.3.3.2-8.13.1
libreoffice-gnome-debuginfo-6.3.3.2-8.13.1
libreoffice-gtk3-6.3.3.2-8.13.1
libreoffice-gtk3-debuginfo-6.3.3.2-8.13.1
libreoffice-impress-6.3.3.2-8.13.1
libreoffice-impress-debuginfo-6.3.3.2-8.13.1
libreoffice-mailmerge-6.3.3.2-8.13.1
libreoffice-math-6.3.3.2-8.13.1
libreoffice-math-debuginfo-6.3.3.2-8.13.1
libreoffice-officebean-6.3.3.2-8.13.1
libreoffice-officebean-debuginfo-6.3.3.2-8.13.1
libreoffice-pyuno-6.3.3.2-8.13.1
libreoffice-pyuno-debuginfo-6.3.3.2-8.13.1
libreoffice-writer-6.3.3.2-8.13.1
libreoffice-writer-debuginfo-6.3.3.2-8.13.1
libreoffice-writer-extensions-6.3.3.2-8.13.1
libreofficekit-6.3.3.2-8.13.1

- SUSE Linux Enterprise Module for Open Buildservice Development Tools
15-SP1 (aarch64 x86_64):

libreoffice-debuginfo-6.3.3.2-8.13.1
libreoffice-debugsource-6.3.3.2-8.13.1
libreoffice-sdk-6.3.3.2-8.13.1
libreoffice-sdk-debuginfo-6.3.3.2-8.13.1
libreoffice-sdk-doc-6.3.3.2-8.13.1
libreofficekit-devel-6.3.3.2-8.13.1

- SUSE Linux Enterprise Module for Open Buildservice Development Tools
15-SP1 (noarch):

libreoffice-gdb-pretty-printers-6.3.3.2-8.13.1
libreoffice-glade-6.3.3.2-8.13.1
libreoffice-l10n-am-6.3.3.2-8.13.1
libreoffice-l10n-ast-6.3.3.2-8.13.1
libreoffice-l10n-be-6.3.3.2-8.13.1
libreoffice-l10n-bn_IN-6.3.3.2-8.13.1
libreoffice-l10n-bo-6.3.3.2-8.13.1
libreoffice-l10n-brx-6.3.3.2-8.13.1
libreoffice-l10n-bs-6.3.3.2-8.13.1
libreoffice-l10n-ca_valencia-6.3.3.2-8.13.1
libreoffice-l10n-dgo-6.3.3.2-8.13.1
libreoffice-l10n-en_GB-6.3.3.2-8.13.1
libreoffice-l10n-en_ZA-6.3.3.2-8.13.1
libreoffice-l10n-fy-6.3.3.2-8.13.1
libreoffice-l10n-gd-6.3.3.2-8.13.1
libreoffice-l10n-gug-6.3.3.2-8.13.1
libreoffice-l10n-hsb-6.3.3.2-8.13.1
libreoffice-l10n-id-6.3.3.2-8.13.1
libreoffice-l10n-is-6.3.3.2-8.13.1
libreoffice-l10n-ka-6.3.3.2-8.13.1
libreoffice-l10n-kab-6.3.3.2-8.13.1
libreoffice-l10n-km-6.3.3.2-8.13.1
libreoffice-l10n-kmr_Latn-6.3.3.2-8.13.1
libreoffice-l10n-kok-6.3.3.2-8.13.1
libreoffice-l10n-ks-6.3.3.2-8.13.1
libreoffice-l10n-lb-6.3.3.2-8.13.1
libreoffice-l10n-lo-6.3.3.2-8.13.1
libreoffice-l10n-mk-6.3.3.2-8.13.1
libreoffice-l10n-mn-6.3.3.2-8.13.1
libreoffice-l10n-mni-6.3.3.2-8.13.1
libreoffice-l10n-my-6.3.3.2-8.13.1
libreoffice-l10n-ne-6.3.3.2-8.13.1
libreoffice-l10n-oc-6.3.3.2-8.13.1
libreoffice-l10n-om-6.3.3.2-8.13.1
libreoffice-l10n-rw-6.3.3.2-8.13.1
libreoffice-l10n-sa_IN-6.3.3.2-8.13.1
libreoffice-l10n-sat-6.3.3.2-8.13.1
libreoffice-l10n-sd-6.3.3.2-8.13.1
libreoffice-l10n-sid-6.3.3.2-8.13.1
libreoffice-l10n-sq-6.3.3.2-8.13.1
libreoffice-l10n-sw_TZ-6.3.3.2-8.13.1
libreoffice-l10n-tg-6.3.3.2-8.13.1
libreoffice-l10n-tt-6.3.3.2-8.13.1
libreoffice-l10n-ug-6.3.3.2-8.13.1
libreoffice-l10n-uz-6.3.3.2-8.13.1
libreoffice-l10n-vec-6.3.3.2-8.13.1
libreoffice-l10n-vi-6.3.3.2-8.13.1


References:

https://www.suse.com/security/cve/CVE-2019-9853.html
https://bugzilla.suse.com/1061210
https://bugzilla.suse.com/1144522
https://bugzilla.suse.com/1152684

_______________________________________________
sle-security-updates mailing list
sle-security-updates@lists.suse.com
http://lists.suse.com/mailman/listinfo/sle-security-updates
Pro-Linux
Pro-Linux @Facebook
Neue Nachrichten
Werbung