openSUSE 安全性更新:libreoffice (openSUSE-SU-2012:1686-1)

medium Nessus Plugin ID 74849

概要

遠端 openSUSE 主機缺少安全性更新。

說明

LibreOffice 已更新至 3.5.4.13 版 (3.5.6rc2 based),可修正一個安全性問題和數個錯誤:

- NULL 指標解除參照 (bnc#778669,CVE-2012-4233)

- bullet-color-pptx-import.diff:項目符號的顏色預設應與接續的文字相同;修正的遺失部分 (bnc#734733)

- suse-3.5.4.13 的更新 (SUSE 3.5 錯誤修正版本 13,根據上游 3.5.6-rc2)

- 多邊體填滿規則 (bnc#759172)

- 在 Writer 中開啟 XML (bnc#777181)

- 文字物件中的復原 (fdo#36138)

- 損毀的編號等級 (bnc#760019)

- 改善 MathML 偵測 (bnc#774921)

- DOCX 匯入中的圖片 (bnc#772094)

- 摺疊邊界繪畫 (fdo#39415)

- 改善 DOCX 文字方塊匯出 (fdo#45724)

- PPTX 匯入中的隱藏文字 (bnc#759180)

- PPTX 匯入中的投影片備忘稿 (bnc#768027)

- DOC 匯入中的 RTL 段落 (fdo#43398)

- 改善垂直文字匯入 (bnc#744510)

- DOCX 匯入中的 HYPERLINK 欄位 (fdo#51034)

- 部分重繪時的陰影色彩 (bnc#773515)

- DOCX 匯入中的浮動物件 (bnc#775899)

- graphite2 斷字迴歸 (fdo#49486)

- 遺漏形狀位置和大小 (bnc#760997)

- ODF 匯入中的頁面樣式屬性 (fdo#38056)

- 在範本對話損毀器中瀏覽 (fdo#46249)

- 使用了錯誤的主要投影片形狀 (bnc#758565)

- ODT 匯入中的頁面框線迴歸 (fdo#38056)

- 拖放後的無效邊界 rect (fdo#44534)

- PPTX 匯入中的旋轉形狀邊界 (bnc#773048)

- 在多個工作表損毀器中貼上 (fdo#47311)

- PPT/PPTX 匯入中的損毀器 (bnc#768027、bnc#774167)

- DOCX/DOC/RTF 匯出中的遺漏註腳 (fdo#46020)

- 核取方塊無標籤行為 (fdo#51336、bnc#757602)

- 以更強硬的方式讀取 w:position (bnc#773061)

- FormatNumber 可以處理 sal_uInt32 值 (fdo#51793)

- DOCX 匯入中的矩形段落表格 (bnc#775899)

- 投影片轉譯中的標頭和項目符號 (bnc#759172)

- DOC/DOCX 匯出中的預設背景色彩 (fdo#45724)

- DOCX 匯入中的字型名稱/大小屬性 (bnc#774681)

- 零 rect. 大小導致錯誤的行位置 (fdo#47434)

- 調整 Bracket/BracePair 在 PPT 中的顯示 (bnc#741480)

- 針對 QuickStarter 工具提示使用 Unicode 函式 (fdo#52143)

- 針對群組形狀修正的 TabRatio API 和偵測巨集 (bnc#770708)

- DOCX 檔案中的縮排文字並未正確換行 (bnc#775906)

- 特定比例的不固定工具列並未顯示所有圖示 (fdo#47071)

- 標題順序為編號優先時的交互參照文字 (fdo#50801)

- 項目符號色彩預設與後續文字相同 (bnc#719988、bnc#734733)

- 其他 RTF 匯入修正 (rhbz#819304、fdo#49666、bnc#774681、fdo#51772、fdo#48033、fdo#52066、fdo#48335、fdo#48446、fdo#49892、fdo#46966)

- libvisio 0.0.19 的更新:

- 檔案在 Draw 中顯示為空白頁面 (fdo#50990)

- 使用的供應商為 SUSE,而非 Novell, Inc.

- install-with-vendor-SUSE.diff:修正供應商 'SUSE' 的安裝

解決方案

更新受影響的 libreoffice 套件。

另請參閱

https://bugzilla.novell.com/show_bug.cgi?id=719988

https://bugzilla.novell.com/show_bug.cgi?id=734733

https://bugzilla.novell.com/show_bug.cgi?id=741480

https://bugzilla.novell.com/show_bug.cgi?id=744510

https://bugzilla.novell.com/show_bug.cgi?id=757602

https://bugzilla.novell.com/show_bug.cgi?id=758565

https://bugzilla.novell.com/show_bug.cgi?id=759172

https://bugzilla.novell.com/show_bug.cgi?id=775899

https://bugzilla.novell.com/show_bug.cgi?id=775906

https://bugzilla.novell.com/show_bug.cgi?id=777181

https://bugzilla.novell.com/show_bug.cgi?id=759180

https://bugzilla.novell.com/show_bug.cgi?id=760019

https://bugzilla.novell.com/show_bug.cgi?id=760997

https://bugzilla.novell.com/show_bug.cgi?id=768027

https://bugzilla.novell.com/show_bug.cgi?id=770708

https://bugzilla.novell.com/show_bug.cgi?id=772094

https://bugzilla.novell.com/show_bug.cgi?id=773048

https://bugzilla.novell.com/show_bug.cgi?id=773061

https://bugzilla.novell.com/show_bug.cgi?id=773515

https://bugzilla.novell.com/show_bug.cgi?id=774167

https://bugzilla.novell.com/show_bug.cgi?id=778669

https://lists.opensuse.org/opensuse-updates/2012-12/msg00047.html

https://bugzilla.novell.com/show_bug.cgi?id=774681

https://bugzilla.novell.com/show_bug.cgi?id=774921

Plugin 詳細資訊

嚴重性: Medium

ID: 74849

檔案名稱: openSUSE-2012-868.nasl

版本: 1.4

類型: local

代理程式: unix

已發布: 2014/6/13

已更新: 2021/1/19

支援的感應器: Frictionless Assessment AWS, Frictionless Assessment Azure, Frictionless Assessment Agent, Nessus Agent, Nessus

風險資訊

VPR

風險因素: Medium

分數: 4.4

CVSS v2

風險因素: Medium

基本分數: 4.3

媒介: CVSS2#AV:N/AC:M/Au:N/C:N/I:N/A:P

弱點資訊

CPE: p-cpe:/a:novell:opensuse:libreoffice, p-cpe:/a:novell:opensuse:libreoffice-base, p-cpe:/a:novell:opensuse:libreoffice-base-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-base-drivers-mysql, p-cpe:/a:novell:opensuse:libreoffice-base-drivers-mysql-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-base-drivers-postgresql, p-cpe:/a:novell:opensuse:libreoffice-base-drivers-postgresql-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-base-extensions, p-cpe:/a:novell:opensuse:libreoffice-branding-upstream, p-cpe:/a:novell:opensuse:libreoffice-calc, p-cpe:/a:novell:opensuse:libreoffice-calc-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-calc-extensions, p-cpe:/a:novell:opensuse:libreoffice-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-debugsource, p-cpe:/a:novell:opensuse:libreoffice-l10n-be-by, p-cpe:/a:novell:opensuse:libreoffice-l10n-bg, p-cpe:/a:novell:opensuse:libreoffice-draw, p-cpe:/a:novell:opensuse:libreoffice-draw-extensions, p-cpe:/a:novell:opensuse:libreoffice-draw-extensions-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-filters-optional, p-cpe:/a:novell:opensuse:libreoffice-filters-optional-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-gnome, p-cpe:/a:novell:opensuse:libreoffice-gnome-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-help-cs, p-cpe:/a:novell:opensuse:libreoffice-help-da, p-cpe:/a:novell:opensuse:libreoffice-help-de, p-cpe:/a:novell:opensuse:libreoffice-help-en-gb, p-cpe:/a:novell:opensuse:libreoffice-help-en-us, p-cpe:/a:novell:opensuse:libreoffice-help-en-za, p-cpe:/a:novell:opensuse:libreoffice-help-es, p-cpe:/a:novell:opensuse:libreoffice-help-et, p-cpe:/a:novell:opensuse:libreoffice-help-fr, p-cpe:/a:novell:opensuse:libreoffice-help-gl, p-cpe:/a:novell:opensuse:libreoffice-help-gu-in, p-cpe:/a:novell:opensuse:libreoffice-help-hi-in, p-cpe:/a:novell:opensuse:libreoffice-help-hu, p-cpe:/a:novell:opensuse:libreoffice-l10n-br, p-cpe:/a:novell:opensuse:libreoffice-l10n-ca, p-cpe:/a:novell:opensuse:libreoffice-l10n-cs, p-cpe:/a:novell:opensuse:libreoffice-l10n-cy, p-cpe:/a:novell:opensuse:libreoffice-l10n-da, p-cpe:/a:novell:opensuse:libreoffice-l10n-de, p-cpe:/a:novell:opensuse:libreoffice-l10n-el, p-cpe:/a:novell:opensuse:libreoffice-l10n-en-gb, p-cpe:/a:novell:opensuse:libreoffice-l10n-en-za, p-cpe:/a:novell:opensuse:libreoffice-l10n-es, p-cpe:/a:novell:opensuse:libreoffice-l10n-et, p-cpe:/a:novell:opensuse:libreoffice-l10n-fi, p-cpe:/a:novell:opensuse:libreoffice-l10n-fr, p-cpe:/a:novell:opensuse:libreoffice-l10n-ga, p-cpe:/a:novell:opensuse:libreoffice-l10n-gl, p-cpe:/a:novell:opensuse:libreoffice-l10n-gu-in, p-cpe:/a:novell:opensuse:libreoffice-l10n-he, p-cpe:/a:novell:opensuse:libreoffice-l10n-hi-in, p-cpe:/a:novell:opensuse:libreoffice-l10n-hr, p-cpe:/a:novell:opensuse:libreoffice-l10n-hu, p-cpe:/a:novell:opensuse:libreoffice-l10n-it, p-cpe:/a:novell:opensuse:libreoffice-l10n-ja, p-cpe:/a:novell:opensuse:libreoffice-l10n-ka, p-cpe:/a:novell:opensuse:libreoffice-l10n-km, p-cpe:/a:novell:opensuse:libreoffice-l10n-ko, p-cpe:/a:novell:opensuse:libreoffice-l10n-lt, p-cpe:/a:novell:opensuse:libreoffice-l10n-mk, p-cpe:/a:novell:opensuse:libreoffice-l10n-nb, p-cpe:/a:novell:opensuse:libreoffice-l10n-nl, p-cpe:/a:novell:opensuse:libreoffice-help-it, p-cpe:/a:novell:opensuse:libreoffice-help-ja, p-cpe:/a:novell:opensuse:libreoffice-help-km, p-cpe:/a:novell:opensuse:libreoffice-help-ko, p-cpe:/a:novell:opensuse:libreoffice-help-nl, p-cpe:/a:novell:opensuse:libreoffice-help-pl, p-cpe:/a:novell:opensuse:libreoffice-help-pt, p-cpe:/a:novell:opensuse:libreoffice-help-pt-br, p-cpe:/a:novell:opensuse:libreoffice-help-ru, p-cpe:/a:novell:opensuse:libreoffice-help-sl, p-cpe:/a:novell:opensuse:libreoffice-help-sv, p-cpe:/a:novell:opensuse:libreoffice-help-zh-cn, p-cpe:/a:novell:opensuse:libreoffice-help-zh-tw, p-cpe:/a:novell:opensuse:libreoffice-icon-theme-crystal, p-cpe:/a:novell:opensuse:libreoffice-icon-theme-galaxy, p-cpe:/a:novell:opensuse:libreoffice-icon-theme-hicontrast, p-cpe:/a:novell:opensuse:libreoffice-icon-theme-oxygen, p-cpe:/a:novell:opensuse:libreoffice-icon-theme-tango, p-cpe:/a:novell:opensuse:libreoffice-icon-themes-prebuilt, p-cpe:/a:novell:opensuse:libreoffice-impress, p-cpe:/a:novell:opensuse:libreoffice-impress-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-impress-extensions, p-cpe:/a:novell:opensuse:libreoffice-impress-extensions-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-kde, p-cpe:/a:novell:opensuse:libreoffice-kde-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-kde4, p-cpe:/a:novell:opensuse:libreoffice-kde4-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-l10n-af, p-cpe:/a:novell:opensuse:libreoffice-l10n-ar, p-cpe:/a:novell:opensuse:libreoffice-l10n-nn, p-cpe:/a:novell:opensuse:libreoffice-l10n-nr, p-cpe:/a:novell:opensuse:libreoffice-l10n-pa-in, p-cpe:/a:novell:opensuse:libreoffice-l10n-pl, p-cpe:/a:novell:opensuse:libreoffice-l10n-prebuilt, p-cpe:/a:novell:opensuse:libreoffice-l10n-pt, p-cpe:/a:novell:opensuse:libreoffice-l10n-pt-br, p-cpe:/a:novell:opensuse:libreoffice-l10n-ru, p-cpe:/a:novell:opensuse:libreoffice-l10n-rw, p-cpe:/a:novell:opensuse:libreoffice-l10n-sh, p-cpe:/a:novell:opensuse:libreoffice-l10n-sk, p-cpe:/a:novell:opensuse:libreoffice-l10n-sl, p-cpe:/a:novell:opensuse:libreoffice-l10n-sr, p-cpe:/a:novell:opensuse:libreoffice-l10n-ss, p-cpe:/a:novell:opensuse:libreoffice-l10n-st, p-cpe:/a:novell:opensuse:libreoffice-l10n-sv, p-cpe:/a:novell:opensuse:libreoffice-l10n-tg, p-cpe:/a:novell:opensuse:libreoffice-l10n-th, p-cpe:/a:novell:opensuse:libreoffice-l10n-tr, p-cpe:/a:novell:opensuse:libreoffice-l10n-ts, p-cpe:/a:novell:opensuse:libreoffice-l10n-uk, p-cpe:/a:novell:opensuse:libreoffice-l10n-ve, p-cpe:/a:novell:opensuse:libreoffice-l10n-vi, p-cpe:/a:novell:opensuse:libreoffice-l10n-xh, p-cpe:/a:novell:opensuse:libreoffice-l10n-zh-cn, p-cpe:/a:novell:opensuse:libreoffice-l10n-zh-tw, p-cpe:/a:novell:opensuse:libreoffice-l10n-zu, p-cpe:/a:novell:opensuse:libreoffice-mailmerge, p-cpe:/a:novell:opensuse:libreoffice-math, p-cpe:/a:novell:opensuse:libreoffice-math-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-officebean, p-cpe:/a:novell:opensuse:libreoffice-officebean-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-pyuno, p-cpe:/a:novell:opensuse:libreoffice-pyuno-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-sdk, p-cpe:/a:novell:opensuse:libreoffice-sdk-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-writer, p-cpe:/a:novell:opensuse:libreoffice-writer-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-writer-extensions, cpe:/o:novell:opensuse:12.2

必要的 KB 項目: Host/local_checks_enabled, Host/cpu, Host/SuSE/release, Host/SuSE/rpm-list

修補程式發佈日期: 2012/12/4

參考資訊

CVE: CVE-2012-4233