TROYANOSYVIRUS
Back to CVEs

CVE-2019-9850

CRITICAL
9.8

Description

LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained with the document it is launched from. LibreOffice also has a feature where documents can specify that pre-installed scripts can be executed on various document script events such as mouse-over, etc. Protection was added, to address CVE-2019-9848, to block calling LibreLogo from script event handers. However an insufficient url validation vulnerability in LibreOffice allowed malicious to bypass that protection and again trigger calling LibreLogo from script event handlers. This issue affects: Document Foundation LibreOffice versions prior to 6.2.6.

CVE Details

CVSS v3.1 Score9.8
SeverityCRITICAL
CVSS VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Attack VectorNETWORK
ComplexityLOW
Privileges RequiredNONE
User InteractionNONE
Published8/15/2019
Last Modified11/21/2024
Sourcenvd
Honeypot Sightings0

Affected Products

canonical:ubuntu_linuxdebian:debian_linuxfedoraproject:fedoralibreoffice:libreofficeopensuse:leap

Weaknesses (CWE)

CWE-20

References

https://seclists.org/bugtraq/2019/Aug/28(security@documentfoundation.org)
https://usn.ubuntu.com/4102-1/(security@documentfoundation.org)
https://www.debian.org/security/2019/dsa-4501(security@documentfoundation.org)
https://seclists.org/bugtraq/2019/Aug/28(af854a3a-2127-422b-91ae-364da2661108)
https://usn.ubuntu.com/4102-1/(af854a3a-2127-422b-91ae-364da2661108)
https://www.debian.org/security/2019/dsa-4501(af854a3a-2127-422b-91ae-364da2661108)

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.