The Document Foundation LibreOffice是The Document Foundation的办公套件。 The Document Foundation LibreOffice存在数字错误漏洞,该漏洞源于导入DXF多段线时存在堆缓冲区溢出,文件中获取的点计数在确定点缓冲区大小时被截断为16位值,但填充时使用完整计数,导致点计数超过16位范围的多段线写入缓冲区末尾。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| The Document Foundation | LibreOffice | 25.8< < 25.8.7 |
affected |
26.2< < 26.2.3 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| The Document Foundation | LibreOffice | 25.8 ~ < 25.8.7 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-6040 | 5.4 MEDIUM | Heap use-after-free in ODF number-format blank-width parsing |
| CVE-2026-6045 | 5.4 MEDIUM | Heap buffer overflow in EMF+ gradient brush import |
| CVE-2026-8357 | 5.4 MEDIUM | Heap buffer overflow in Calc formula compilation |
| CVE-2026-6047 | Heap buffer overflow in OOXML text box element import | |
| CVE-2026-8358 | Heap buffer overflow in spreadsheet tracked-changes import | |
| CVE-2026-8356 | Stack buffer overflow in PPT presentation import |
No comments yet