QID 375960

Date Published: 2021-10-19

QID 375960: LibreOffice Content Manipulation With Certificate Validation Vulnerability

LibreOffice is a office suite application.

An Improper Certificate Validation vulnerability in LibreOffice allowed an attacker to self sign an ODF document, with a signature untrusted by the target, then modify it to change the signature algorithm to an invalid (or unknown to LibreOffice) algorithm and LibreOffice would incorrectly present such a signature with an unknown algorithm as a valid signature issued by a trusted person.

Affected versions:
LibreOffice versions prior to 7.0.5/7.1.1

QID Detection Logic (Authenticated):
This QID checks the vulnerable version of LibreOffice by checking the file version of file soffice.exe.

Successful exploitation could allow confidentiality and integrity impact

  • CVSS V3 rated as High - 6.7 severity.
  • CVSS V2 rated as Medium - 3.3 severity.
  • Solution
    Customers are advised to upgrade to LibreOffice version 7.0.5/7.1.1 or later. For more information refer LibreOffice

    CVEs related to QID 375960

    Software Advisories
    Advisory ID Software Component Link
    NA URL Logo www.libreoffice.org/about-us/security/advisories/cve-2021-25635/