Comment 2 for bug 2044369

Revision history for this message
Launchpad Janitor (janitor) wrote :

This bug was fixed in the package libreoffice - 4:7.5.9-0ubuntu0.23.04.1

---------------
libreoffice (4:7.5.9-0ubuntu0.23.04.1) lunar-security; urgency=medium

  * New upstream release (LP: #2044369)
  * SECURITY UPDATE: Improper input validation enabling arbitrary Gstreamer
    pipeline injection
    - CVE-2023-6185
  * SECURITY UPDATE: Link targets allow arbitrary script execution
    - CVE-2023-6186

  [ Rico Tzschichholz ]
  * patches/CppunitTest_desktop_lib-adjust-asserts-so-this-works.patch:
    - Usage of expired certificates in CppunitTest_desktop_lib:
      adjust asserts so this works again

  [ Rene Engelhard ]
  * debian/rules:
    - Re-enable cmis; bump libcmis build-dep to >= 0.6.1

 -- Rico Tzschichholz <email address hidden> Tue, 28 Nov 2023 20:57:57 +0100