QID 376799

Date Published: 2022-08-08

QID 376799: LibreOffice Improper Certificate Validation Vulnerability

LibreOffice is a office suite application.

Affected versions:
7.2.0 prior to version 7.2.7
7.3.0 prior to version 7.3.2
QID Detection Logic (Authenticated):
This QID checks the vulnerable version of LibreOffice by checking the file version of file soffice.exe.

Successful exploit could compromise confidentiality, integrity and availability

  • CVSS V3 rated as High - 7.5 severity.
  • CVSS V2 rated as Critical - 10 severity.
  • Solution
    Customers are advised to upgrade to LibreOffice version 7.2.7/7.3.3 or later. For more information refer LibreOffice

    CVEs related to QID 376799

    Software Advisories
    Advisory ID Software Component Link
    LibreOffice URL Logo www.libreoffice.org/about-us/security/advisories/cve-2022-26305