Path traversal in LibreOffice - CVE-2018-16858

 

Path traversal in LibreOffice - CVE-2018-16858

Published: February 4, 2019 / Updated: June 17, 2021


Vulnerability identifier: #VU17362
CSH Severity: High
CVSS v4: 8.4 [CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2018-16858
CWE-ID: CWE-22
Exploitation vector: Remote access
Exploit availability: The vulnerability is being exploited in the wild

Vulnerability details

The vulnerability allows a remote attacker to perform directory traversal attacks.

The vulnerability exists due to input validation error. A remote attacker can trick the victim into opening a specially crafted Office file, conduct path traversal attack and execute a python method from a script in any arbitrary file system location


Affected software

LibreOffice
libreoffice (Debian package)
libreoffice
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Desktop
Opensuse
Fedora

How to mitigate CVE-2018-16858

The vulnerability has been addressed in the versions 6.0.7, 6.1.3.

LibreOffice - addressed in versions 6.0.7, 6.1.3
libreoffice (Debian package) - update to 1:5.2.7-1+deb9u5
libreoffice - update to 6.0.7.3-1.fc28

Links to Public Exploits and PoC-codes

External References

Related Security Bulletins