CVE-2023-36268

NameCVE-2023-36268
DescriptionAn issue in The Document Foundation Libreoffice v.7.4.7 allows a remote attacker to cause a denial of service via a crafted .ppt file.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
libreoffice (PTS)buster1:6.1.5-3+deb10u7vulnerable
buster (security)1:6.1.5-3+deb10u11vulnerable
bullseye1:7.0.4-4+deb11u8vulnerable
bullseye (security)1:7.0.4-4+deb11u9vulnerable
bookworm4:7.4.7-1+deb12u1vulnerable
bookworm (security)4:7.4.7-1+deb12u2vulnerable
sid, trixie4:24.2.3-1vulnerable

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
libreofficesource(unstable)(unfixed)unimportant

Notes

Resource overload in desktop app, no security impact

Search for package or bug name: Reporting problems