CVE-2023-36268

NameCVE-2023-36268
DescriptionAn issue in The Document Foundation Libreoffice v.7.4.7 allows a remote attacker to cause a denial of service via a crafted .ppt file.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
libreoffice (PTS)bullseye (security), bullseye1:7.0.4-4+deb11u10vulnerable
bookworm, bookworm (security)4:7.4.7-1+deb12u4vulnerable
trixie4:24.2.5-4vulnerable
sid4:24.2.6-1vulnerable

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
libreofficesource(unstable)(unfixed)unimportant

Notes

Resource overload in desktop app, no security impact

Search for package or bug name: Reporting problems