Back to bug 2210185
| Who | When | What | Removed | Added |
|---|---|---|---|---|
| Sandipan Roy | 2023-05-26 04:22:14 UTC | Blocks | 2210116 | |
| Sandipan Roy | 2023-05-26 04:31:51 UTC | Doc Text | A vulnerability was found in libreoffice. Using this security flaw an Improper access control in editor components of The Document Foundation LibreOffice allowed an attacker to craft a document that would cause external links to be loaded without prompt. In the affected versions of LibreOffice documents that used "floating frames" linked to external files, would load the contents of those frames without prompting the user for permission to do so. This was inconsistent with the treatment of other linked content in LibreOffice. | |
| Sandipan Roy | 2023-05-26 04:32:11 UTC | Depends On | 2210189, 2210190 | |
| Sandipan Roy | 2023-05-26 04:34:05 UTC | Depends On | 2210198, 2210196, 2210197, 2210195 | |
| RaTasha Tillery-Smith | 2023-05-26 14:15:03 UTC | Doc Text | A vulnerability was found in libreoffice. Using this security flaw an Improper access control in editor components of The Document Foundation LibreOffice allowed an attacker to craft a document that would cause external links to be loaded without prompt. In the affected versions of LibreOffice documents that used "floating frames" linked to external files, would load the contents of those frames without prompting the user for permission to do so. This was inconsistent with the treatment of other linked content in LibreOffice. | A vulnerability was found in LibreOffice. Improper access control in the editor components of The Document Foundation in LibreOffice allows an attacker to craft a document that causes external links to load without a prompt. In the affected versions of LibreOffice documents that used "floating frames" linked to external files, they would load the contents of those frames without prompting the user for permission. This action was inconsistent with the treatment of other linked content in LibreOffice. |
| Red Hat Bugzilla | 2023-07-07 08:29:25 UTC | Assignee | security-response-team | nobody |
Back to bug 2210185