CVE-2023-36268

NameCVE-2023-36268
DescriptionAn issue in The Document Foundation Libreoffice v.7.4.7 allows a remote attacker to cause a denial of service via a crafted .ppt file.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
libreoffice (PTS)bullseye (security), bullseye1:7.0.4-4+deb11u9vulnerable
bookworm4:7.4.7-1+deb12u3vulnerable
bookworm (security)4:7.4.7-1+deb12u2vulnerable
sid, trixie4:24.2.5-1vulnerable

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
libreofficesource(unstable)(unfixed)unimportant

Notes

Resource overload in desktop app, no security impact

Search for package or bug name: Reporting problems