Ukuba semngciphekweni kwiLibreOffice kunye ne-Apache OpenOffice evumela ukugqitha uqinisekiso lomsayino wedijithali

Ubuthathaka obuthathu kwiofisi ye-LibreOffice kunye ne-Apache OpenOffice yeeofisi ziye zabhengezwa ezinokuthi zivumele abahlaseli ukuba balungiselele amaxwebhu abonakala esayinwe ngumthombo othembekileyo okanye atshintshe umhla woxwebhu esele lutyikityiwe. Iingxaki zalungiswa ekukhutshweni kwe-Apache OpenOffice 4.1.11 kunye ne-LibreOffice 7.0.6/7.1.2 phantsi kwengubo ye-non-security bugs (i-LibreOffice 7.0.6 kunye ne-7.1.2 yapapashwa ekuqaleni kukaMeyi, kodwa ukuba sesichengeni kuphela ngoku ichaziwe).

  • I-CVE-2021-41832, i-CVE-2021-25635 - ivumela umhlaseli ukuba asayine uxwebhu lwe-ODF kunye nesatifikethi esingathembekiyo esisayiniweyo, kodwa ngokutshintsha i-algorithm yesignesha yedijithali kwixabiso elingalunganga okanye elingaxhaswanga, ukuphumeza umboniso wolu xwebhu njengoluthembekileyo. (utyikityo olune-algorithm engachanekanga yaphathwa njengechanekileyo).
  • I-CVE-2021-41830, i-CVE-2021-25633 - ivumela umhlaseli ukuba enze uxwebhu lwe-ODF okanye i-macro eya kuboniswa kwi-interface njengento ethembekileyo, ngaphandle kobukho bomxholo owongezelelweyo oqinisekiswe sesinye isatifikethi.
  • I-CVE-2021-41831, i-CVE-2021-25634 - ivumela utshintsho ukuba lwenziwe kuxwebhu lwe-ODF olusayinwe ngedijithali oluphazamisa ixesha lokuvelisa utyikityo lwedijithali oluboniswe kumsebenzisi ngaphandle kokwaphula isalathisi sokuthembela.

umthombo: opennet.ru

Yongeza izimvo