5.3
CVSSv3

CVE-2020-12802

Published: 08/06/2020 Updated: 31/12/2023
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

LibreOffice has a 'stealth mode' in which only documents from locations deemed 'trusted' are allowed to retrieve remote resources. This mode is not the default mode, but can be enabled by users who want to disable LibreOffice's ability to include remote resources within a document. A flaw existed where remote graphic links loaded from docx documents were omitted from this protection prior to version 6.4.4. This issue affects: The Document Foundation LibreOffice versions before 6.4.4.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

libreoffice libreoffice

fedoraproject fedora 31

opensuse leap 15.1

opensuse leap 15.2

Vendor Advisories

Synopsis Low: libreoffice security, bug fix, and enhancement update Type/Severity Security Advisory: Low Topic An update for libreoffice, libcmis, and liborcus is now available for Red Hat Enterprise Linux 8Red Hat Product Security has rated this update as having a security impact of Low A Common Vulnerab ...
LibreOffice has a 'stealth mode' in which only documents from locations deemed 'trusted' are allowed to retrieve remote resources This mode is not the default mode, but can be enabled by users who want to disable LibreOffice's ability to include remote resources within a document A flaw existed where remote graphic links loaded from docx document ...