/srv/irclogs.ubuntu.com/2025/01/24/#ubuntu-security.txt

=== rgavgmapazqvpzhf is now known as svtesfufmuiuwegh
=== svtesfufmuiuwegh is now known as georgiag
ricotzmdeslaur, hi :), could you take a closer look at https://bugs.launchpad.net/ubuntu/+source/libreoffice/+bug/209530712:23
-ubottu:#ubuntu-security- Launchpad bug 2095307 in libreoffice (Ubuntu Oracular) "CVE-2024-12425 and CVE-2024-12426" [High, In Progress]12:23
ebarrettoricotz: Marc is out today but back on Monday. He already assigned those CVEs to himself, so I'm sure he will take a look on Monday 12:46
ricotzebarretto, hi, alright, thank you12:46
ricotzebarretto, on that regard do you know why these CVEs are not registered on launchpad? Therefore I am not able to link them to the bug report12:48
ricotze.g. https://launchpad.net/bugs/cve/CVE-2024-1242512:48
-ubottu:#ubuntu-security- Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in The Document Foundation LibreOffice allows Absolute Path Traversal. An attacker can write to arbitrary locations, albeit suffixed with ".ttf", by supplying a file in a format that supports embedded font files. This issue affects LibreOffice: from 24.8 before < 24.8.4. <https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-12425>12:48
ricotzhmm, interesting, locally I am getting the famous "Lost something?" page12:49
=== JanC is now known as Guest2868
=== JanC is now known as Guest5714
=== JanC is now known as Guest6380
=== JanC is now known as Guest5381

Generated by irclog2html.py 2.7 by Marius Gedminas - find it at mg.pov.lt!