{"id":"RLSA-2024:1514","summary":"Important: libreoffice security fix update","details":"LibreOffice is an open source, community-developed office productivity suite. It includes key desktop applications, such as a word processor, a spreadsheet, a presentation manager, a formula editor, and a drawing program. LibreOffice replaces OpenOffice and provides a similar but enhanced and extended office suite.\n\nSecurity Fix(es):\n\n* libreoffice: Improper Input Validation leading to arbitrary gstreamer plugin execution (CVE-2023-6185)\n\n* libreoffice: Insufficient macro permission validation leading to macro execution (CVE-2023-6186)","modified":"2026-02-05T14:15:10.479266Z","published":"2024-03-27T04:34:32.999941Z","upstream":["CVE-2023-6185","CVE-2023-6186"],"references":[{"type":"ADVISORY","url":"https://errata.rockylinux.org/RLSA-2024:1514"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2254003"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2254005"}],"affected":[{"package":{"name":"libreoffice","ecosystem":"Rocky Linux:8","purl":"pkg:rpm/rocky-linux/libreoffice?distro=rocky-linux-8&epoch=1"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1:6.4.7.2-16.el8_9"}],"database_specific":{"yum_repository":"AppStream"}}],"database_specific":{"source":"https://storage.googleapis.com/resf-osv-data/RLSA-2024:1514.json"}}],"schema_version":"1.7.3","credits":[{"name":"Rocky Enterprise Software Foundation"},{"name":"Red Hat"}]}