Unchecked script execution in Graphic on-click binding in affected LibreOffice versions allows an attacker to create a document which without prompt will execute scripts built-into LibreOffice on clicking a graphic. Such scripts were previously deemed trusted but are now deemed untrusted.
Metrics
Affected Vendors & Products
References
History
Wed, 10 Dec 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Debian
Debian debian Linux Fedoraproject Fedoraproject fedora Libreoffice Libreoffice libreoffice |
|
| CPEs | cpe:2.3:a:libreoffice:libreoffice:*:*:*:*:*:*:*:* cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:* cpe:2.3:o:fedoraproject:fedora:39:*:*:*:*:*:*:* |
|
| Vendors & Products |
Debian
Debian debian Linux Fedoraproject Fedoraproject fedora Libreoffice Libreoffice libreoffice |
Tue, 12 Nov 2024 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-94 | |
| Metrics |
cvssV3_1
|
cvssV3_1
|
Fri, 20 Sep 2024 10:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 20 Sep 2024 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Unchecked script execution in Graphic on-click binding in affected LibreOffice versions allows an attacker to create a document which without prompt will execute scripts built-into LibreOffice on clicking a graphic. Such scripts were previously deemed trusted but are now deemed untrusted. | Unchecked script execution in Graphic on-click binding in affected LibreOffice versions allows an attacker to create a document which without prompt will execute scripts built-into LibreOffice on clicking a graphic. Such scripts were previously deemed trusted but are now deemed untrusted. |
| Weaknesses | CWE-356 |
Status: PUBLISHED
Assigner: Document Fdn.
Published: 2024-05-14T20:19:51.426Z
Updated: 2024-11-12T20:14:27.961Z
Reserved: 2024-03-28T15:28:21.866Z
Link: CVE-2024-3044
Updated: 2024-08-01T19:32:42.580Z
Status : Analyzed
Published: 2024-05-14T21:15:12.627
Modified: 2025-12-10T19:10:17.363
Link: CVE-2024-3044