The Document Foundation LibreOffice是The Document Foundation的办公套件。 The Document Foundation LibreOffice存在安全漏洞,该漏洞源于导入EMF+渐变画笔时存在堆缓冲区溢出,渐变混合点数从文件中读取并用于计算分配大小,但乘法可能溢出,导致分配小缓冲区后超限写入。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| The Document Foundation | LibreOffice | 25.8< < 25.8.7 |
affected |
26.2< < 26.2.3 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| The Document Foundation | LibreOffice | 25.8 ~ < 25.8.7 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-6040 | 5.4 MEDIUM | Heap use-after-free in ODF number-format blank-width parsing |
| CVE-2026-8357 | 5.4 MEDIUM | Heap buffer overflow in Calc formula compilation |
| CVE-2026-6039 | Heap buffer overflow in DXF polyline import | |
| CVE-2026-6047 | Heap buffer overflow in OOXML text box element import | |
| CVE-2026-8358 | Heap buffer overflow in spreadsheet tracked-changes import | |
| CVE-2026-8356 | Stack buffer overflow in PPT presentation import |
No comments yet