QID 376265
Date Published: 2022-02-14
QID 376265: LibreOffice check for Memory corruption via DER-encoded DSA and Rivest-Shamir-Adleman (RSA)-PSS (CVE-2021-43527)
LibreOffice is a office suite application.
CVE-2021-43527 : Memory corruption via DER-encoded DSA and RSA-PSS signatures.
Affected versions:
LibreOffice versions prior to 7.1.8
LibreOffice versions from 7.2.0 prior to 7.2.4
QID Detection Logic (Authenticated):
This QID checks the vulnerable version of LibreOffice by checking the file version of file soffice.exe.
Successful exploitation could allow attacker for Denial of Service(DOS)
Solution
Customers are advised to upgrade to LibreOffice version 7.1.8/7.2.4 or later. For more information refer LibreOffice
Vendor References
- CVE-2021-43527 -
www.libreoffice.org/about-us/security/advisories/
CVEs related to QID 376265
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| CVE-2021-43527 |
|