Date: prev next · Thread: first prev next last
2015 Archives by date, by thread · List index

Re: [tdf-discuss] security related information, CVE-2015-4551, CVE-2015-5212, CVE-2015-5213, CVE-2015-5214

On Sun, Nov 08, 2015 at 11:01:48AM +0100, Rene Engelhard wrote:
On Sat, Nov 07, 2015 at 11:33:52PM +0100, Jean-Baptiste Faure wrote:
Le 05/11/2015 12:19, Caolán McNamara a écrit :
Bottom Line: ensure you are upgraded to at least 4.4.6 or 5.0.0

Fixed in LibreOffice 4.4.6/5.0.0

CVE-2015-5214 DOC Bookmark Status Memory Corruption

Fixed in LibreOffice 4.4.5/5.0.0

Do you confirm that these security issues are fixed in 5.0._0_ (that is
to say since 2015-08-05) and not only in 5.0._3_ that has been just
released ?

It was definitely fixed before 5.0.3.
My memories say from 5.0.2 rc1 onwards or somesuch but it might also be wrong
and confusing something.

I did some research today based on the commit messages - and when I am not mistaken
most of them are fixed in 5.0.0 but CVE-2015-5214 is fixed only in 5.0.1.
(But still long before 5.0.3)



To unsubscribe e-mail to:
Posting guidelines + more:
List archive:
All messages sent to this list will be publicly archived and cannot be deleted


Privacy Policy | Impressum (Legal Info) | Copyright information: Unless otherwise specified, all text and images on this website are licensed under the Creative Commons Attribution-Share Alike 3.0 License. This does not include the source code of LibreOffice, which is licensed under the Mozilla Public License (MPLv2). "LibreOffice" and "The Document Foundation" are registered trademarks of their corresponding registered owners or are in actual use as trademarks in one or more countries. Their respective logos and icons are also subject to international copyright laws. Use thereof is explained in our trademark policy.