openSUSE 安全更新:libreoffice (openSUSE-SU-2012:1686-1)

medium Nessus 插件 ID 74849

简介

远程 openSUSE 主机缺少安全更新。

描述

LibreOffice 已更新到 3.5.4.13(基于 3.5.6rc2),修复了一个安全问题和大量缺陷:

- 空指针取消引用(bnc#778669,CVE-2012-4233)

- bullet-color-pptx-import.diff:项目符号应默认具有与后续文本相同的颜色;缺失部分补丁 (bnc#734733)

- 更新到 suse-3.5.4.13(SUSE 3.5 缺陷补丁版本 13,基于 Upstream 3.5.6-rc2)

- 多边形填充规则 (bnc#759172)

- 在编写器中打开 XML (bnc#777181)

- 文本对象中的撤销 (fdo#36138)

- 编号级别中断 (bnc#760019)

- 更好地检测 MathML (bnc#774921)

- DOCX 导入中的图片 (bnc#772094)

- 重叠边框绘制 (fdo#39415)

- 更好的 DOCX 文本框导出 (fdo#45724)

- PPTX 导入中的隐藏文字 (bnc#759180)

- PPTX 导入中的幻灯片备注 (bnc#768027)

- DOC 导入中的 RTL 段落 (fdo#43398)

更好地导入竖排文字 (bnc#744510)

- DOCX 导入中的 HYPERLINK 字段 (fdo#51034)

- 部分重绘上的阴影颜色 (bnc#773515)

- DOCX 导入中的浮动对象 (bnc#775899)

- graphite2 断字回归 (fdo#49486)

- 缺失形状位置和大小 (bnc#760997)

- ODF 导入中的页面样式属性 (fdo#38056)

- 浏览模板对话框时崩溃 (fdo#46249)

- 所用幻灯片母版形状错误 (bnc#758565)

- ODT 导入中的页面边框回归 (fdo#38056)

- 拖放后造成 bound rect 无效 (fdo#44534)

- PPTX 导入中的形状边缘旋转 (bnc#773048)

- 粘贴到多张工作表时崩溃 (fdo#47311)

- PPT/PPTX 导入时崩溃(bnc#768027、bnc#774167)

- DOCX/DOC/RTF 导出中缺少脚注 (fdo#46020)

- 复选框无标签行为(fdo#51336、bnc#757602)

- 更努力地尝试读取 w:position (bnc#773061)

- FormatNumber 可处理 sal_uInt32 值 (fdo#51793)

- DOCX 导入中的 rectangle-paragraph 表 (bnc#775899)

- 幻灯片放映转换时的标题和项目符号 (bnc#759172)

- DOC/DOCX 导出中的默认背景颜色 (fdo#45724)

- DOCX 导入中的字体名称/大小属性 (bnc#774681)

- rect. 大小为零,导致行位置错误 (fdo#47434)

- 在 PPT 中调整了 Bracket/BracePair 的显示 (bnc#741480)

- 对 QuickStarter 工具提示使用 Unicode 函数 (fdo#52143)

- 关于组形状的 TabRatio API 和检测宏补丁 (bnc#770708)

- DOCX 文件中缩进文字换行不正确 (bnc#775906)

- 未停靠的工具栏不能以特殊比例显示所有图标 (fdo#47071)

- 当标题顺序为编号优先时出现交叉引用文本 (fdo#50801)

- 项目符号颜色默认应与后续文本相同(bnc#719988、bnc#734733)

- 各种 RTF 导入补丁(rhbz#819304、fdo#49666、bnc#774681、fdo#51772、fdo#48033、fdo#52066、fdo#48335、fdo#48446、fdo#49892、fdo#46966)

- 更新到 libvisio 0.0.19:

- 绘图中文件显示为空白页 (fdo#50990)

- 使用供应商 SUSE 而非 Novell, Inc.

- install-with-vendor-SUSE.diff:修复了供应商“SUSE”的安装问题

解决方案

更新受影响的 libreoffice 程序包。

另见

https://bugzilla.novell.com/show_bug.cgi?id=719988

https://bugzilla.novell.com/show_bug.cgi?id=734733

https://bugzilla.novell.com/show_bug.cgi?id=741480

https://bugzilla.novell.com/show_bug.cgi?id=744510

https://bugzilla.novell.com/show_bug.cgi?id=757602

https://bugzilla.novell.com/show_bug.cgi?id=758565

https://bugzilla.novell.com/show_bug.cgi?id=759172

https://bugzilla.novell.com/show_bug.cgi?id=775899

https://bugzilla.novell.com/show_bug.cgi?id=775906

https://bugzilla.novell.com/show_bug.cgi?id=777181

https://bugzilla.novell.com/show_bug.cgi?id=759180

https://bugzilla.novell.com/show_bug.cgi?id=760019

https://bugzilla.novell.com/show_bug.cgi?id=760997

https://bugzilla.novell.com/show_bug.cgi?id=768027

https://bugzilla.novell.com/show_bug.cgi?id=770708

https://bugzilla.novell.com/show_bug.cgi?id=772094

https://bugzilla.novell.com/show_bug.cgi?id=773048

https://bugzilla.novell.com/show_bug.cgi?id=773061

https://bugzilla.novell.com/show_bug.cgi?id=773515

https://bugzilla.novell.com/show_bug.cgi?id=774167

https://bugzilla.novell.com/show_bug.cgi?id=778669

https://lists.opensuse.org/opensuse-updates/2012-12/msg00047.html

https://bugzilla.novell.com/show_bug.cgi?id=774681

https://bugzilla.novell.com/show_bug.cgi?id=774921

插件详情

严重性: Medium

ID: 74849

文件名: openSUSE-2012-868.nasl

版本: 1.4

类型: local

代理: unix

发布时间: 2014/6/13

最近更新时间: 2021/1/19

支持的传感器: Frictionless Assessment AWS, Frictionless Assessment Azure, Frictionless Assessment Agent, Nessus Agent, Nessus

风险信息

VPR

风险因素: Medium

分数: 4.4

CVSS v2

风险因素: Medium

基本分数: 4.3

矢量: CVSS2#AV:N/AC:M/Au:N/C:N/I:N/A:P

漏洞信息

CPE: p-cpe:/a:novell:opensuse:libreoffice, p-cpe:/a:novell:opensuse:libreoffice-base, p-cpe:/a:novell:opensuse:libreoffice-base-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-base-drivers-mysql, p-cpe:/a:novell:opensuse:libreoffice-base-drivers-mysql-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-base-drivers-postgresql, p-cpe:/a:novell:opensuse:libreoffice-base-drivers-postgresql-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-base-extensions, p-cpe:/a:novell:opensuse:libreoffice-branding-upstream, p-cpe:/a:novell:opensuse:libreoffice-calc, p-cpe:/a:novell:opensuse:libreoffice-calc-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-calc-extensions, p-cpe:/a:novell:opensuse:libreoffice-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-debugsource, p-cpe:/a:novell:opensuse:libreoffice-l10n-be-by, p-cpe:/a:novell:opensuse:libreoffice-l10n-bg, p-cpe:/a:novell:opensuse:libreoffice-draw, p-cpe:/a:novell:opensuse:libreoffice-draw-extensions, p-cpe:/a:novell:opensuse:libreoffice-draw-extensions-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-filters-optional, p-cpe:/a:novell:opensuse:libreoffice-filters-optional-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-gnome, p-cpe:/a:novell:opensuse:libreoffice-gnome-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-help-cs, p-cpe:/a:novell:opensuse:libreoffice-help-da, p-cpe:/a:novell:opensuse:libreoffice-help-de, p-cpe:/a:novell:opensuse:libreoffice-help-en-gb, p-cpe:/a:novell:opensuse:libreoffice-help-en-us, p-cpe:/a:novell:opensuse:libreoffice-help-en-za, p-cpe:/a:novell:opensuse:libreoffice-help-es, p-cpe:/a:novell:opensuse:libreoffice-help-et, p-cpe:/a:novell:opensuse:libreoffice-help-fr, p-cpe:/a:novell:opensuse:libreoffice-help-gl, p-cpe:/a:novell:opensuse:libreoffice-help-gu-in, p-cpe:/a:novell:opensuse:libreoffice-help-hi-in, p-cpe:/a:novell:opensuse:libreoffice-help-hu, p-cpe:/a:novell:opensuse:libreoffice-l10n-br, p-cpe:/a:novell:opensuse:libreoffice-l10n-ca, p-cpe:/a:novell:opensuse:libreoffice-l10n-cs, p-cpe:/a:novell:opensuse:libreoffice-l10n-cy, p-cpe:/a:novell:opensuse:libreoffice-l10n-da, p-cpe:/a:novell:opensuse:libreoffice-l10n-de, p-cpe:/a:novell:opensuse:libreoffice-l10n-el, p-cpe:/a:novell:opensuse:libreoffice-l10n-en-gb, p-cpe:/a:novell:opensuse:libreoffice-l10n-en-za, p-cpe:/a:novell:opensuse:libreoffice-l10n-es, p-cpe:/a:novell:opensuse:libreoffice-l10n-et, p-cpe:/a:novell:opensuse:libreoffice-l10n-fi, p-cpe:/a:novell:opensuse:libreoffice-l10n-fr, p-cpe:/a:novell:opensuse:libreoffice-l10n-ga, p-cpe:/a:novell:opensuse:libreoffice-l10n-gl, p-cpe:/a:novell:opensuse:libreoffice-l10n-gu-in, p-cpe:/a:novell:opensuse:libreoffice-l10n-he, p-cpe:/a:novell:opensuse:libreoffice-l10n-hi-in, p-cpe:/a:novell:opensuse:libreoffice-l10n-hr, p-cpe:/a:novell:opensuse:libreoffice-l10n-hu, p-cpe:/a:novell:opensuse:libreoffice-l10n-it, p-cpe:/a:novell:opensuse:libreoffice-l10n-ja, p-cpe:/a:novell:opensuse:libreoffice-l10n-ka, p-cpe:/a:novell:opensuse:libreoffice-l10n-km, p-cpe:/a:novell:opensuse:libreoffice-l10n-ko, p-cpe:/a:novell:opensuse:libreoffice-l10n-lt, p-cpe:/a:novell:opensuse:libreoffice-l10n-mk, p-cpe:/a:novell:opensuse:libreoffice-l10n-nb, p-cpe:/a:novell:opensuse:libreoffice-l10n-nl, p-cpe:/a:novell:opensuse:libreoffice-help-it, p-cpe:/a:novell:opensuse:libreoffice-help-ja, p-cpe:/a:novell:opensuse:libreoffice-help-km, p-cpe:/a:novell:opensuse:libreoffice-help-ko, p-cpe:/a:novell:opensuse:libreoffice-help-nl, p-cpe:/a:novell:opensuse:libreoffice-help-pl, p-cpe:/a:novell:opensuse:libreoffice-help-pt, p-cpe:/a:novell:opensuse:libreoffice-help-pt-br, p-cpe:/a:novell:opensuse:libreoffice-help-ru, p-cpe:/a:novell:opensuse:libreoffice-help-sl, p-cpe:/a:novell:opensuse:libreoffice-help-sv, p-cpe:/a:novell:opensuse:libreoffice-help-zh-cn, p-cpe:/a:novell:opensuse:libreoffice-help-zh-tw, p-cpe:/a:novell:opensuse:libreoffice-icon-theme-crystal, p-cpe:/a:novell:opensuse:libreoffice-icon-theme-galaxy, p-cpe:/a:novell:opensuse:libreoffice-icon-theme-hicontrast, p-cpe:/a:novell:opensuse:libreoffice-icon-theme-oxygen, p-cpe:/a:novell:opensuse:libreoffice-icon-theme-tango, p-cpe:/a:novell:opensuse:libreoffice-icon-themes-prebuilt, p-cpe:/a:novell:opensuse:libreoffice-impress, p-cpe:/a:novell:opensuse:libreoffice-impress-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-impress-extensions, p-cpe:/a:novell:opensuse:libreoffice-impress-extensions-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-kde, p-cpe:/a:novell:opensuse:libreoffice-kde-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-kde4, p-cpe:/a:novell:opensuse:libreoffice-kde4-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-l10n-af, p-cpe:/a:novell:opensuse:libreoffice-l10n-ar, p-cpe:/a:novell:opensuse:libreoffice-l10n-nn, p-cpe:/a:novell:opensuse:libreoffice-l10n-nr, p-cpe:/a:novell:opensuse:libreoffice-l10n-pa-in, p-cpe:/a:novell:opensuse:libreoffice-l10n-pl, p-cpe:/a:novell:opensuse:libreoffice-l10n-prebuilt, p-cpe:/a:novell:opensuse:libreoffice-l10n-pt, p-cpe:/a:novell:opensuse:libreoffice-l10n-pt-br, p-cpe:/a:novell:opensuse:libreoffice-l10n-ru, p-cpe:/a:novell:opensuse:libreoffice-l10n-rw, p-cpe:/a:novell:opensuse:libreoffice-l10n-sh, p-cpe:/a:novell:opensuse:libreoffice-l10n-sk, p-cpe:/a:novell:opensuse:libreoffice-l10n-sl, p-cpe:/a:novell:opensuse:libreoffice-l10n-sr, p-cpe:/a:novell:opensuse:libreoffice-l10n-ss, p-cpe:/a:novell:opensuse:libreoffice-l10n-st, p-cpe:/a:novell:opensuse:libreoffice-l10n-sv, p-cpe:/a:novell:opensuse:libreoffice-l10n-tg, p-cpe:/a:novell:opensuse:libreoffice-l10n-th, p-cpe:/a:novell:opensuse:libreoffice-l10n-tr, p-cpe:/a:novell:opensuse:libreoffice-l10n-ts, p-cpe:/a:novell:opensuse:libreoffice-l10n-uk, p-cpe:/a:novell:opensuse:libreoffice-l10n-ve, p-cpe:/a:novell:opensuse:libreoffice-l10n-vi, p-cpe:/a:novell:opensuse:libreoffice-l10n-xh, p-cpe:/a:novell:opensuse:libreoffice-l10n-zh-cn, p-cpe:/a:novell:opensuse:libreoffice-l10n-zh-tw, p-cpe:/a:novell:opensuse:libreoffice-l10n-zu, p-cpe:/a:novell:opensuse:libreoffice-mailmerge, p-cpe:/a:novell:opensuse:libreoffice-math, p-cpe:/a:novell:opensuse:libreoffice-math-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-officebean, p-cpe:/a:novell:opensuse:libreoffice-officebean-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-pyuno, p-cpe:/a:novell:opensuse:libreoffice-pyuno-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-sdk, p-cpe:/a:novell:opensuse:libreoffice-sdk-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-writer, p-cpe:/a:novell:opensuse:libreoffice-writer-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-writer-extensions, cpe:/o:novell:opensuse:12.2

必需的 KB 项: Host/local_checks_enabled, Host/cpu, Host/SuSE/release, Host/SuSE/rpm-list

补丁发布日期: 2012/12/4

参考资料信息

CVE: CVE-2012-4233