<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 05:22:26 +0000</lastBuildDate>
    <item>
      <title>ALSA-2022:1766 — Moderate: libreoffice security, bug fix, and enhancement update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2022:1766</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: autocorr-af, AlmaLinux:8: autocorr-bg, AlmaLinux:8: autocorr-ca, AlmaLinux:8: autocorr-cs, AlmaLinux:8: autocorr-da, AlmaLinux:8: autocorr-de, AlmaLinux:8: autocorr-en, AlmaLinux:8: autocorr-es, AlmaLinux:8: autocorr-fa, AlmaLinux:8: autocorr-fi and 161 more&lt;/p&gt;
&lt;p&gt;LibreOffice is an open source, community-developed office productivity suite. It includes key desktop applications, such as a word processor, a spreadsheet, a presentation manager, a formula editor, and a drawing program. LibreOffice replaces OpenOffice and provides a similar but enhanced and extended office suite.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* libreoffice: Content Manipulation with Double Certificate Attack (CVE-2021-25633)&lt;/p&gt;
&lt;p&gt;* libreoffice: Timestamp Manipulation with Signature Wrapping (CVE-2021-25634)&lt;/p&gt;
&lt;p&gt;* libreoffice: Content Manipulation with Certificate Validation Attack (CVE-2021-25635)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;
&lt;p&gt;Additional Changes:&lt;/p&gt;
&lt;p&gt;For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: autocorr-af, AlmaLinux:8: autocorr-bg, AlmaLinux:8: autocorr-ca, AlmaLinux:8: autocorr-cs, AlmaLinux:8: autocorr-da, AlmaLinux:8: autocorr-de, AlmaLinux:8: autocorr-en, AlmaLinux:8: autocorr-es, AlmaLinux:8: autocorr-fa, AlmaLinux:8: autocorr-fi and 161 more&lt;/p&gt;
&lt;p&gt;LibreOffice is an open source, community-developed office productivity suite. It includes key desktop applications, such as a word processor, a spreadsheet, a presentation manager, a formula editor, and a drawing program. LibreOffice replaces OpenOffice and provides a similar but enhanced and extended office suite.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* libreoffice: Content Manipulation with Double Certificate Attack (CVE-2021-25633)&lt;/p&gt;
&lt;p&gt;* libreoffice: Timestamp Manipulation with Signature Wrapping (CVE-2021-25634)&lt;/p&gt;
&lt;p&gt;* libreoffice: Content Manipulation with Certificate Validation Attack (CVE-2021-25635)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;
&lt;p&gt;Additional Changes:&lt;/p&gt;
&lt;p&gt;For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2022:1766</guid>
    </item>
    <item>
      <title>bdu:2021-05337</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2021-05337</link>
      <description>bdu:2021-05337</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2021-05337</guid>
    </item>
    <item>
      <title>cnvd-2022-55627</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2022-55627</link>
      <description>cnvd-2022-55627</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2022-55627</guid>
    </item>
    <item>
      <title>EUVD-2026-167940</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-167940</link>
      <description>EUVD-2026-167940</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-167940</guid>
    </item>
    <item>
      <title>fkie_cve-2021-25633</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2021-25633</link>
      <description>&lt;p&gt;LibreOffice supports digital signatures of ODF documents and macros within documents, presenting visual aids that no alteration of the document occurred since the last signing and that the signature is valid. An Improper Certificate Validation vulnerability in LibreOffice allowed an attacker to create a digitally signed ODF document, by manipulating the documentsignatures.xml or macrosignatures.xml stream within the document to combine multiple certificate data, which when opened caused LibreOffice to display a validly signed indicator but whose content was unrelated to the signature shown. This issue affects: The Document Foundation LibreOffice 7-0 versions prior to 7.0.6; 7-1 versions prior to 7.1.2.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;LibreOffice supports digital signatures of ODF documents and macros within documents, presenting visual aids that no alteration of the document occurred since the last signing and that the signature is valid. An Improper Certificate Validation vulnerability in LibreOffice allowed an attacker to create a digitally signed ODF document, by manipulating the documentsignatures.xml or macrosignatures.xml stream within the document to combine multiple certificate data, which when opened caused LibreOffice to display a validly signed indicator but whose content was unrelated to the signature shown. This issue affects: The Document Foundation LibreOffice 7-0 versions prior to 7.0.6; 7-1 versions prior to 7.1.2.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2021-25633</guid>
    </item>
    <item>
      <title>GHSA-fx8r-3hmx-c78j</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-fx8r-3hmx-c78j</link>
      <description>&lt;p&gt;LibreOffice supports digital signatures of ODF documents and macros within documents, presenting visual aids that no alteration of the document occurred since the last signing and that the signature is valid. An Improper Certificate Validation vulnerability in LibreOffice allowed an attacker to create a digitally signed ODF document, by manipulating the documentsignatures.xml or macrosignatures.xml stream within the document to combine multiple certificate data, which when opened caused LibreOffice to display a validly signed indicator but whose content was unrelated to the signature shown. This issue affects: The Document Foundation LibreOffice 7-0 versions prior to 7.0.6; 7-1 versions prior to 7.1.2.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;LibreOffice supports digital signatures of ODF documents and macros within documents, presenting visual aids that no alteration of the document occurred since the last signing and that the signature is valid. An Improper Certificate Validation vulnerability in LibreOffice allowed an attacker to create a digitally signed ODF document, by manipulating the documentsignatures.xml or macrosignatures.xml stream within the document to combine multiple certificate data, which when opened caused LibreOffice to display a validly signed indicator but whose content was unrelated to the signature shown. This issue affects: The Document Foundation LibreOffice 7-0 versions prior to 7.0.6; 7-1 versions prior to 7.1.2.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-fx8r-3hmx-c78j</guid>
    </item>
    <item>
      <title>gsd-2021-25633</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2021-25633</link>
      <description>gsd-2021-25633</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2021-25633</guid>
    </item>
    <item>
      <title>RHSA-2022:1766 — Red Hat Security Advisory: libreoffice security, bug fix, and enhancement update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2022:1766</link>
      <description>&lt;p&gt;libreoffice: Content Manipulation with Double Certificate Attack libreoffice: Timestamp Manipulation with Signature Wrapping libreoffice: Content Manipulation with Certificate Validation Attack&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;libreoffice: Content Manipulation with Double Certificate Attack libreoffice: Timestamp Manipulation with Signature Wrapping libreoffice: Content Manipulation with Certificate Validation Attack&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2022:1766</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2021-25633</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-25633</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:20.04:LTS: libreoffice&lt;/p&gt;
&lt;p&gt;LibreOffice supports digital signatures of ODF documents and macros within documents, presenting visual aids that no alteration of the document occurred since the last signing and that the signature is valid. An Improper Certificate Validation vulnerability in LibreOffice allowed an attacker to create a digitally signed ODF document, by manipulating the documentsignatures.xml or macrosignatures.xml stream within the document to combine multiple certificate data, which when opened caused LibreOffice to display a validly signed indicator but whose content was unrelated to the signature shown. This issue affects: The Document Foundation LibreOffice 7-0 versions prior to 7.0.6; 7-1 versions prior to 7.1.2.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:20.04:LTS: libreoffice&lt;/p&gt;
&lt;p&gt;LibreOffice supports digital signatures of ODF documents and macros within documents, presenting visual aids that no alteration of the document occurred since the last signing and that the signature is valid. An Improper Certificate Validation vulnerability in LibreOffice allowed an attacker to create a digitally signed ODF document, by manipulating the documentsignatures.xml or macrosignatures.xml stream within the document to combine multiple certificate data, which when opened caused LibreOffice to display a validly signed indicator but whose content was unrelated to the signature shown. This issue affects: The Document Foundation LibreOffice 7-0 versions prior to 7.0.6; 7-1 versions prior to 7.1.2.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-25633</guid>
    </item>
  </channel>
</rss>
