CVE-2017-12608

Title: CVE-2017-12608 Out-of-Bounds Write in Writer's ImportOldFormatStyles

Announced: October  27, 2017

Fixed in: LibreOffice 5.0.2/5.1.0

Description:

Prior to version 5.0.2/5.1.0 a vulnerability exists in the DOC style parser, allows attackers to craft malicious documents that cause denial of service (memory corruption and application crash) potentially resulting in arbitrary code execution. Users should already have upgraded to versions >= 5.0.2/5.1.0 due to earlier advisories.

References:

    CVE-2017-12608

Latest Tweets

@libreoffice
@tdforg