SUSE-SU-2024:2258-1: important: Security update for libreoffice
SLE-SECURITY-UPDATES
null at suse.de
Tue Jul 2 08:30:06 UTC 2024
- Previous message (by thread): SUSE-SU-2024:1639-2: important: Security update for python-arcomplete, python-Fabric, python-PyGithub, python-antlr4-python3-runtime, python-avro, python-chardet, python-distro, python-docker, python-fakeredis, python-fixedint, pyth
- Next message (by thread): SUSE-SU-2024:2257-1: important: Security update for libreoffice
- Messages sorted by:
[ date ]
[ thread ]
[ subject ]
[ author ]
# Security update for libreoffice
Announcement ID: SUSE-SU-2024:2258-1
Rating: important
References:
* bsc#1224279
* bsc#1224309
Cross-References:
* CVE-2024-3044
CVSS scores:
* CVE-2024-3044 ( SUSE ): 7.1 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N
Affected Products:
* SUSE Linux Enterprise High Performance Computing 12 SP5
* SUSE Linux Enterprise Server 12 SP5
* SUSE Linux Enterprise Server for SAP Applications 12 SP5
* SUSE Linux Enterprise Software Development Kit 12 SP5
* SUSE Linux Enterprise Workstation Extension 12 12-SP5
An update that solves one vulnerability and has one security fix can now be
installed.
## Description:
This update for libreoffice fixes the following issues:
Libreoffice was updated to version 24.2.4.2:
* Release notes:
* https://wiki.documentfoundation.org/Releases/24.2.1/RC1
* https://wiki.documentfoundation.org/Releases/24.2.1/RC2
* Security issues fixed:
* CVE-2024-3044: Fixed unchecked script execution in graphic on-click binding
(bsc#1224279)
* Other issues fixed:
* Fixed LibreOffice build failures with ICU 75 (bsc#1224309)
* Updated bundled dependencies:
* curl version update from 8.6.0 to 8.7.1
* gpgme version update from 1.20.0 to 1.23.2
* libassuan version update from 2.5.6 to 2.5.7
* libgpg-error version update from 1.47 to 1.48
## Patch Instructions:
To install this SUSE update use the SUSE recommended installation methods like
YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
* SUSE Linux Enterprise Software Development Kit 12 SP5
zypper in -t patch SUSE-SLE-SDK-12-SP5-2024-2258=1
* SUSE Linux Enterprise Workstation Extension 12 12-SP5
zypper in -t patch SUSE-SLE-WE-12-SP5-2024-2258=1
## Package List:
* SUSE Linux Enterprise Software Development Kit 12 SP5 (x86_64)
* libreoffice-debuginfo-24.2.4.2-48.59.3
* libreoffice-debugsource-24.2.4.2-48.59.3
* libreoffice-sdk-debuginfo-24.2.4.2-48.59.3
* libreoffice-sdk-24.2.4.2-48.59.3
* SUSE Linux Enterprise Workstation Extension 12 12-SP5 (x86_64)
* libreoffice-mailmerge-24.2.4.2-48.59.3
* libreoffice-pyuno-24.2.4.2-48.59.3
* libreoffice-calc-debuginfo-24.2.4.2-48.59.3
* libreoffice-base-debuginfo-24.2.4.2-48.59.3
* libreoffice-math-24.2.4.2-48.59.3
* libreoffice-writer-extensions-24.2.4.2-48.59.3
* libreoffice-gtk3-24.2.4.2-48.59.3
* libreoffice-gnome-debuginfo-24.2.4.2-48.59.3
* libreoffice-calc-extensions-24.2.4.2-48.59.3
* libreoffice-draw-24.2.4.2-48.59.3
* libreoffice-gnome-24.2.4.2-48.59.3
* libreoffice-draw-debuginfo-24.2.4.2-48.59.3
* libreoffice-officebean-24.2.4.2-48.59.3
* libreoffice-base-drivers-postgresql-debuginfo-24.2.4.2-48.59.3
* libreoffice-debugsource-24.2.4.2-48.59.3
* libreoffice-writer-debuginfo-24.2.4.2-48.59.3
* libreoffice-base-drivers-postgresql-24.2.4.2-48.59.3
* libreoffice-math-debuginfo-24.2.4.2-48.59.3
* libreoffice-writer-24.2.4.2-48.59.3
* libreoffice-24.2.4.2-48.59.3
* libreoffice-calc-24.2.4.2-48.59.3
* libreoffice-librelogo-24.2.4.2-48.59.3
* libreoffice-gtk3-debuginfo-24.2.4.2-48.59.3
* libreoffice-pyuno-debuginfo-24.2.4.2-48.59.3
* libreoffice-impress-debuginfo-24.2.4.2-48.59.3
* libreoffice-filters-optional-24.2.4.2-48.59.3
* libreoffice-debuginfo-24.2.4.2-48.59.3
* libreoffice-officebean-debuginfo-24.2.4.2-48.59.3
* libreoffice-impress-24.2.4.2-48.59.3
* libreoffice-base-24.2.4.2-48.59.3
* SUSE Linux Enterprise Workstation Extension 12 12-SP5 (noarch)
* libreoffice-l10n-zh_CN-24.2.4.2-48.59.3
* libreoffice-l10n-ru-24.2.4.2-48.59.3
* libreoffice-l10n-cs-24.2.4.2-48.59.3
* libreoffice-l10n-uk-24.2.4.2-48.59.3
* libreoffice-l10n-hi-24.2.4.2-48.59.3
* libreoffice-l10n-fr-24.2.4.2-48.59.3
* libreoffice-l10n-sk-24.2.4.2-48.59.3
* libreoffice-l10n-af-24.2.4.2-48.59.3
* libreoffice-l10n-gu-24.2.4.2-48.59.3
* libreoffice-l10n-en-24.2.4.2-48.59.3
* libreoffice-l10n-it-24.2.4.2-48.59.3
* libreoffice-l10n-ko-24.2.4.2-48.59.3
* libreoffice-l10n-es-24.2.4.2-48.59.3
* libreoffice-l10n-hu-24.2.4.2-48.59.3
* libreoffice-l10n-nn-24.2.4.2-48.59.3
* libreoffice-l10n-bg-24.2.4.2-48.59.3
* libreoffice-l10n-pl-24.2.4.2-48.59.3
* libreoffice-l10n-pt_BR-24.2.4.2-48.59.3
* libreoffice-l10n-da-24.2.4.2-48.59.3
* libreoffice-l10n-ro-24.2.4.2-48.59.3
* libreoffice-l10n-sv-24.2.4.2-48.59.3
* libreoffice-l10n-pt_PT-24.2.4.2-48.59.3
* libreoffice-l10n-zu-24.2.4.2-48.59.3
* libreoffice-l10n-ar-24.2.4.2-48.59.3
* libreoffice-l10n-nb-24.2.4.2-48.59.3
* libreoffice-l10n-fi-24.2.4.2-48.59.3
* libreoffice-l10n-ca-24.2.4.2-48.59.3
* libreoffice-l10n-zh_TW-24.2.4.2-48.59.3
* libreoffice-icon-themes-24.2.4.2-48.59.3
* libreoffice-l10n-hr-24.2.4.2-48.59.3
* libreoffice-l10n-de-24.2.4.2-48.59.3
* libreoffice-l10n-ja-24.2.4.2-48.59.3
* libreoffice-l10n-nl-24.2.4.2-48.59.3
* libreoffice-l10n-xh-24.2.4.2-48.59.3
* libreoffice-l10n-lt-24.2.4.2-48.59.3
* libreoffice-branding-upstream-24.2.4.2-48.59.3
## References:
* https://www.suse.com/security/cve/CVE-2024-3044.html
* https://bugzilla.suse.com/show_bug.cgi?id=1224279
* https://bugzilla.suse.com/show_bug.cgi?id=1224309
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.suse.com/pipermail/sle-security-updates/attachments/20240702/0af2aefb/attachment.htm>
- Previous message (by thread): SUSE-SU-2024:1639-2: important: Security update for python-arcomplete, python-Fabric, python-PyGithub, python-antlr4-python3-runtime, python-avro, python-chardet, python-distro, python-docker, python-fakeredis, python-fixedint, pyth
- Next message (by thread): SUSE-SU-2024:2257-1: important: Security update for libreoffice
- Messages sorted by:
[ date ]
[ thread ]
[ subject ]
[ author ]
More information about the sle-security-updates
mailing list