<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 02:31:28 +0000</lastBuildDate>
    <item>
      <title>ALSA-2023:6508 — Moderate: libreoffice security update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2023:6508</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:9: autocorr-af, AlmaLinux:9: autocorr-bg, AlmaLinux:9: autocorr-ca, AlmaLinux:9: autocorr-cs, AlmaLinux:9: autocorr-da, AlmaLinux:9: autocorr-de, AlmaLinux:9: autocorr-dsb, AlmaLinux:9: autocorr-el, AlmaLinux:9: autocorr-en, AlmaLinux:9: autocorr-es and 169 more&lt;/p&gt;
&lt;p&gt;LibreOffice is an open source, community-developed office productivity suite. It includes key desktop applications, such as a word processor, a spreadsheet, a presentation manager, a formula editor, and a drawing program. LibreOffice replaces OpenOffice and provides a similar but enhanced and extended office suite.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* libreoffice: Empty entry in Java class path (CVE-2022-38745)
* libreoffice: Array index underflow in Calc formula parsing (CVE-2023-0950)
* libreoffice: Arbitrary file write (CVE-2023-1183)
* libreoffice: Remote documents loaded without prompt via IFrame (CVE-2023-2255)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;
&lt;p&gt;Additional Changes:&lt;/p&gt;
&lt;p&gt;For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:9: autocorr-af, AlmaLinux:9: autocorr-bg, AlmaLinux:9: autocorr-ca, AlmaLinux:9: autocorr-cs, AlmaLinux:9: autocorr-da, AlmaLinux:9: autocorr-de, AlmaLinux:9: autocorr-dsb, AlmaLinux:9: autocorr-el, AlmaLinux:9: autocorr-en, AlmaLinux:9: autocorr-es and 169 more&lt;/p&gt;
&lt;p&gt;LibreOffice is an open source, community-developed office productivity suite. It includes key desktop applications, such as a word processor, a spreadsheet, a presentation manager, a formula editor, and a drawing program. LibreOffice replaces OpenOffice and provides a similar but enhanced and extended office suite.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* libreoffice: Empty entry in Java class path (CVE-2022-38745)
* libreoffice: Array index underflow in Calc formula parsing (CVE-2023-0950)
* libreoffice: Arbitrary file write (CVE-2023-1183)
* libreoffice: Remote documents loaded without prompt via IFrame (CVE-2023-2255)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;
&lt;p&gt;Additional Changes:&lt;/p&gt;
&lt;p&gt;For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2023:6508</guid>
    </item>
    <item>
      <title>bdu:2023-02968</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2023-02968</link>
      <description>bdu:2023-02968</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2023-02968</guid>
    </item>
    <item>
      <title>certfr-2023-avi-0413 — De multiples vulnérabilités ont été découvertes dans &lt;span
class="textit"&gt;LibreOffice&lt;/span&gt;. Elles permettent à un att…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0413</link>
      <description>certfr-2023-avi-0413</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2023-avi-0413</guid>
    </item>
    <item>
      <title>EUVD-2026-6898</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-6898</link>
      <description>EUVD-2026-6898</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-6898</guid>
    </item>
    <item>
      <title>fkie_cve-2023-2255</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-2255</link>
      <description>&lt;p&gt;Improper access control in editor components of The Document Foundation LibreOffice allowed an attacker to craft a document that would cause external links to be loaded without prompt. In the affected versions of LibreOffice documents that used &amp;#34;floating frames&amp;#34; linked to external files, would load the contents of those frames without prompting the user for permission to do so. This was inconsistent with the treatment of other linked content in LibreOffice. This issue affects: The Document Foundation LibreOffice 7.4 versions prior to 7.4.7; 7.5 versions prior to 7.5.3.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Improper access control in editor components of The Document Foundation LibreOffice allowed an attacker to craft a document that would cause external links to be loaded without prompt. In the affected versions of LibreOffice documents that used &amp;#34;floating frames&amp;#34; linked to external files, would load the contents of those frames without prompting the user for permission to do so. This was inconsistent with the treatment of other linked content in LibreOffice. This issue affects: The Document Foundation LibreOffice 7.4 versions prior to 7.4.7; 7.5 versions prior to 7.5.3.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-2255</guid>
    </item>
    <item>
      <title>GHSA-6pmq-j4m3-q2r8</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-6pmq-j4m3-q2r8</link>
      <description>&lt;p&gt;Improper access control in editor components of The Document Foundation LibreOffice allowed an attacker to craft a document that would cause external links to be loaded without prompt. In the affected versions of LibreOffice documents that used &amp;#34;floating frames&amp;#34; linked to external files, would load the contents of those frames without prompting the user for permission to do so. This was inconsistent with the treatment of other linked content in LibreOffice. This issue affects: The Document Foundation LibreOffice 7.4 versions prior to 7.4.7; 7.5 versions prior to 7.5.3.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Improper access control in editor components of The Document Foundation LibreOffice allowed an attacker to craft a document that would cause external links to be loaded without prompt. In the affected versions of LibreOffice documents that used &amp;#34;floating frames&amp;#34; linked to external files, would load the contents of those frames without prompting the user for permission to do so. This was inconsistent with the treatment of other linked content in LibreOffice. This issue affects: The Document Foundation LibreOffice 7.4 versions prior to 7.4.7; 7.5 versions prior to 7.5.3.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-6pmq-j4m3-q2r8</guid>
    </item>
    <item>
      <title>gsd-2023-2255</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-2255</link>
      <description>gsd-2023-2255</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-2255</guid>
    </item>
    <item>
      <title>RHSA-2023:6508 — Red Hat Security Advisory: libreoffice security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2023:6508</link>
      <description>&lt;p&gt;libreoffice: Empty entry in Java class path libreoffice: Array index underflow in Calc formula parsing libreoffice: Arbitrary file write libreoffice: Remote documents loaded without prompt via IFrame&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;libreoffice: Empty entry in Java class path libreoffice: Array index underflow in Calc formula parsing libreoffice: Arbitrary file write libreoffice: Remote documents loaded without prompt via IFrame&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2023:6508</guid>
    </item>
    <item>
      <title>SUSE-FU-2023:3696-1 — Feature update for LibreOffice</title>
      <link>https://cve.radiocsirt.org/vuln/suse-fu-2023:3696-1</link>
      <description>&lt;p&gt;Feature update for LibreOffice&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Feature update for LibreOffice&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-fu-2023:3696-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2023-2255</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-2255</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:20.04:LTS: libreoffice, Ubuntu:22.04:LTS: libreoffice&lt;/p&gt;
&lt;p&gt;Improper access control in editor components of The Document Foundation LibreOffice allowed an attacker to craft a document that would cause external links to be loaded without prompt. In the affected versions of LibreOffice documents that used &amp;#34;floating frames&amp;#34; linked to external files, would load the contents of those frames without prompting the user for permission to do so. This was inconsistent with the treatment of other linked content in LibreOffice. This issue affects: The Document Foundation LibreOffice 7.4 versions prior to 7.4.7; 7.5 versions prior to 7.5.3.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:20.04:LTS: libreoffice, Ubuntu:22.04:LTS: libreoffice&lt;/p&gt;
&lt;p&gt;Improper access control in editor components of The Document Foundation LibreOffice allowed an attacker to craft a document that would cause external links to be loaded without prompt. In the affected versions of LibreOffice documents that used &amp;#34;floating frames&amp;#34; linked to external files, would load the contents of those frames without prompting the user for permission to do so. This was inconsistent with the treatment of other linked content in LibreOffice. This issue affects: The Document Foundation LibreOffice 7.4 versions prior to 7.4.7; 7.5 versions prior to 7.5.3.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-2255</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-1307 — LibreOffice: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-1307</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in LibreOffice ausnutzen, um beliebigen Programmcode auszuführen und Sicherheitsmaßnahmen zu umgehen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in LibreOffice ausnutzen, um beliebigen Programmcode auszuführen und Sicherheitsmaßnahmen zu umgehen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-1307</guid>
    </item>
  </channel>
</rss>
