[Git][security-tracker-team/security-tracker][master] 4 commits: fix libreoffice version info for sid; add not-affected for CVEs not affecting...

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Jun 16 06:32:45 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
893ecdb6 by Rene Engelhard at 2026-06-16T06:49:04+02:00
fix libreoffice version info for sid; add not-affected for CVEs not affecting trixie or bookworm, respectively

- - - - -
eb00f9f3 by Rene Engelhard at 2026-06-16T06:50:01+02:00
Merge branch security-tracker:master into master
- - - - -
95ed4845 by Rene Engelhard at 2026-06-16T07:06:01+02:00
actally mention 4:26.2.3.2-2 for libreoffice CVE-2026-6*

- - - - -
3d019e3e by Salvatore Bonaccorso at 2026-06-16T07:32:41+02:00
Merge branch 'master' into 'master'

fix libreoffice version info for sid; add not-affected for CVEs not affecting...

See merge request security-tracker-team/security-tracker!308
- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -22,27 +22,30 @@ CVE-2026-8386 (The WP Go Maps  WordPress plugin before 10.0.10 does not perform
 CVE-2026-8385 (The WP Go Maps  WordPress plugin before 10.0.10 does not properly enfo ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2026-8358 (LibreOffice Calc can import tracked changes from a spreadsheet documen ...)
-	- libreoffice <unfixed>
-	NOTE: ttps://www.libreoffice.org/about-us/security/advisories/cve-2026-8358
+	- libreoffice 4:26.2.4.2-1
+	NOTE: https://www.libreoffice.org/about-us/security/advisories/cve-2026-8358
 CVE-2026-8357 (LibreOffice Calc compiles cell formulas when opening a spreadsheet. A  ...)
-	- libreoffice <unfixed>
+	- libreoffice 4:26.2.4.2-1
 	NOTE: https://www.libreoffice.org/about-us/security/advisories/cve-2026-8357
 CVE-2026-8356 (LibreOffice can import presentations in the legacy binary PPT format.  ...)
-	- libreoffice <unfixed>
+	- libreoffice 4:26.2.4.2-1
 	NOTE: https://www.libreoffice.org/about-us/security/advisories/cve-2026-8356
 CVE-2026-6517 (Mattermost Desktop App versions <=6.1 5.5.13.0 fail to restrict the al ...)
 	NOT-FOR-US: Mattermost Desktop App
 CVE-2026-6047 (LibreOffice can import documents in the OOXML format (DOCX). A heap bu ...)
-	- libreoffice <unfixed>
+	- libreoffice 4:26.2.3.2-2
+	[trixie] - libreoffice <not-affected> (Vulnerable code not present)
+	[bookworm] - libreoffice <not-affected> (Vulnerable code not present)
 	NOTE: https://www.libreoffice.org/about-us/security/advisories/cve-2026-6047
 CVE-2026-6045 (LibreOffice can import EMF+ graphics, which may be embedded in documen ...)
-	- libreoffice <unfixed>
+	- libreoffice 4:26.2.3.2-2
 	NOTE: https://www.libreoffice.org/about-us/security/advisories/cve-2026-6045
 CVE-2026-6040 (A heap use-after-free existed when importing the blank-width character ...)
-	- libreoffice <unfixed>
+	- libreoffice 4:26.2.3.2-2
+	[bookworm] - libreoffice <not-affected> (Vulnerable code not present)
 	NOTE: https://www.libreoffice.org/about-us/security/advisories/cve-2026-6040
 CVE-2026-6039 (LibreOffice can import drawings in the DXF format used by CAD software ...)
-	- libreoffice <unfixed>
+	- libreoffice 4:26.2.3.2-2
 	NOTE: https://www.libreoffice.org/about-us/security/advisories/cve-2026-6039
 CVE-2026-5482 (Responsive FileManager's allows an unauthenticatedattacker to upload f ...)
 	NOT-FOR-US: ResponsiveFilemanager



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/1e6382dc0784af42d74b26007e7cb84a51f53aed...3d019e3e0fa6f9caca64c158bd5e4867e93c015a

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/1e6382dc0784af42d74b26007e7cb84a51f53aed...3d019e3e0fa6f9caca64c158bd5e4867e93c015a
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260616/67c18603/attachment.htm>


More information about the debian-security-tracker-commits mailing list