#VU28799 Permissions, Privileges, and Access Controls in LibreOffice - CVE-2020-12802
Published: June 9, 2020
LibreOffice
LibreOffice
Description
The vulnerability allows a remote attacker to bypass implemented security restrictions.
The vulnerability exists due to application does not properly impose security restrictions on remote graphic links loaded from docx documents, when LibreOffice has a 'stealth mode' enabled. A remote attacker can bypass implemented restriction and cause the application to load graphic links from untrused resources.