openSUSE Security Update : libreoffice (openSUSE-SU-2012:0433-1)

medium Nessus Plugin ID 74584

Synopsis

The remote openSUSE host is missing a security update.

Description

- updated to libreoffice-3.4.5.4 (SUSE 3.4.5-rc2)

- calc

- pie charts colors messed in XLS import (fdo#40320)

- correctly import data point formats in data series (fdo#40320)

- components

- crash when parsing XML signatures (fdo#39657)

- broken getDataArray (fdo#46165, fdo#38441, i#117010)

- don't paint a frame around the list of edit boxes (fdo#42543)

- inconsistent compression method for encrypted documents (bnc#653688)

- filters

- more on bentConnectors (bnc#736495)

- wrong text color in smartArt (bnc#746996)

- reading of w:textbox contents (bnc#693388)

- textbox position and size DOCX import (fdo#45560)

- RTF/DOCX import of transparent frames (bnc#695479)

- consecutive frames in RTF/DOCX import (bnc#703032)

- handling of frame properties in RTF import (bnc#417818)

- force imported XLSX active tab to be shown (bnc#748198)

- create TableManager for inside shapes (bnc#747471, bnc#693238)

- textboxes import with OLE objects inside (bnc#747471, bnc#693238)

- impress

- do not create an empty slide when printing handouts (fdo#31966)

- libs-core

- default shortcut for .uno:SearchDialog should be Ctrl+H

- crash using instances dialog of dataform navigator (fdo#44816)

- libs-extern

- disable problematic reading of external entities in raptor

- libs-gui

- correctly calculate leap year

- use proper Indian Rupee currency symbol U+20B9 (rh#794679)

- writer

- field refreshing (fdo#39694)

- more layout crashers (i#101776, fdo#39510)

- textbox borders style and width in DOCX import (fdo#45560)

- expand all text fields when setting properties (fdo#42073)

- updated to libreoffice-3.4.5.3 (SUSE 3.4.5-rc1)

- version 3.4.5.3, tag suse-3.4.5.3 (SUSE LO 3.4.5-rc1)

- SmartArt import

- custom shapes import

- Oracle Java 1.7.0 detection

- reading AES-encrypted ODF 1.2 documents as generated by LO 3.5

- base

- iterator misuse (fdo #44040, bnc#742178)

- calc

- allow pasting to multiple ranges (bnc#715094)

- correctly convert chart data ranges (bnc#727504)

- definedName corruption for XLSX export (bnc#741182)

- adjust/shrink the ranges while copying (bnc#677811)

- extra graph data is displayed for label (bnc#717290)

- getCellRangeByName failure for named range (bnc#738113)

- graph in XLS file has dates displayed wrong (bnc#720443)

- improve performance of large Excel documents (bnc#715104)

- display page background color/image properly (bnc#722045)

- pivot table output becoming empty on re-save (bnc#715543)

- encode virtual paths to local volume correctly (bnc#719887)

- avoid adjusting cell-anchored objects on other sheets (bnc#726152)

- make sure to adjust the sheet index of drawing objects (bnc#733864)

- make the data validation popup more reliable (fdo #36851, bnc#737190)

- filters

- table style (bnc#705991)

- text rotation fixes (bnc#734734)

- crash in PPTX import (bnc#706792)

- read w:sdt* contents (bnc#705949)

- connector shape fixes (bnc#719989)

- legacy fragment import (bnc#699334)

- non-working Excel macros (bnc#705977)

- free drawn curves import (bnc#657909)

- group shape transformations (bnc#621739)

- extLst of drawings in diagrams import (bnc#655408)

- flip properties of custom shapes import (bnc#705985)

- line spacing is used from previous values (bnc#734734)

- missing ooxml customshape->mso shape name entries (bnc#737921)

- word doesn't break the numberings and prefers hiding them (bnc#707157)

- impress

- undo corruption (bnc#685123)

- do not set duplicate master slide names (bnc#735533)

- libs-core

- handle copy and paste from ConsoleOne (bnc#704274)

- VBA control events not working, broken eventattacher (bnc#718227)

- 'General Error' when double-click graphic in presentation (bnc#720948)

- libs-extern-sys

- upgrade graphite to 1.0.3 fix surrogate support

- libs-gui

- crash at exit (bnc#728603)

- radial gradient offset (bnc#714787)

- horizontal scrollbars with KDE oxygen style (bnc#722918)

- rendering of metafiles embedded in EMF+ (updated) (bnc#705956)

- postprocess

- make the 3D transitions work again (bnc#728559)

- ure

- make Duden Korrektor 5 and 6 work

- writer

- frame selection (bnc#740117)

- crash when editing index (bnc#726174)

- order database properties (bnc#740032)

- numbering levels in DOC import (bnc#715115)

- image size issue in DOC import (bnc#718971)

- pointless forward moving of a table (bnc#706138)

- tabs set after the end margin in DOCX import (bnc#693238)

- add hyperlinks by default in Table of Contents (bnc#705956)

- updated to libreoffice-3.4.4.3 (SUSE 3.4.4-rc1 == final) :

- base

- crash when inserting a constant in a query (fdo#38286)

- calc

- crash when modifying a named range

- speed up range name lookup by index (bnc#715104)

- recalculate matrix formula dimension correctly (fdo#39485)

- mark all formula cells dirty when appending a new sheet (fdo#35965)

- components

- handling of SAFEARRAY(s) in olebridge (fdo#38441)

- filters

- auto fit text VIEWING too small in PPT import (fdo#41245)

- impress

- hang in slideshow (fdo#32861)

- crash while dropping texture (fdo#38391)

- libs-core

- recognize .svg in ODF container (fdo#41995)

- dictionaries lost after LibO upgrade (fdo#37195)

- crash when 'Find Record' button is clicked in Base (fdo#40701)

- fix the drawing of dotted and dashed borders in Calc (fdo#37129)

- VBA control events not working; broken eventattacher (bnc#718227)

- libs-extern-sys

- upgrade graphite to 1.0.3 to fix surrogate support

- libs-gui

- crash when changing screen resolution

- let Qt call XInitThreads() (fdo#40298)

- activation order crashes address database (fdo#41022)

- drawing of dotted and dashed borders in Calc (fdo#37129)

- translations

- update translations

- writer

- leak in PDF export (i#116448)

- crash when editing index (bnc#726174)

- crash while processing incorrect range of pages (fdo#35513)

- crash on closing document with footnotes (fdo#39510, lp#854626)

Solution

Update the affected libreoffice packages.

See Also

https://bugzilla.novell.com/show_bug.cgi?id=705956

https://bugzilla.novell.com/show_bug.cgi?id=705977

https://bugzilla.novell.com/show_bug.cgi?id=705985

https://bugzilla.novell.com/show_bug.cgi?id=705991

https://bugzilla.novell.com/show_bug.cgi?id=706138

https://bugzilla.novell.com/show_bug.cgi?id=706792

https://bugzilla.novell.com/show_bug.cgi?id=707157

https://bugzilla.novell.com/show_bug.cgi?id=714787

https://bugzilla.novell.com/show_bug.cgi?id=715094

https://bugzilla.novell.com/show_bug.cgi?id=715104

https://bugzilla.novell.com/show_bug.cgi?id=715115

https://bugzilla.novell.com/show_bug.cgi?id=715543

https://bugzilla.novell.com/show_bug.cgi?id=717290

https://bugzilla.novell.com/show_bug.cgi?id=718227

https://bugzilla.novell.com/show_bug.cgi?id=718694

https://bugzilla.novell.com/show_bug.cgi?id=718971

https://bugzilla.novell.com/show_bug.cgi?id=719656

https://bugzilla.novell.com/show_bug.cgi?id=719887

https://bugzilla.novell.com/show_bug.cgi?id=719989

https://bugzilla.novell.com/show_bug.cgi?id=720443

https://bugzilla.novell.com/show_bug.cgi?id=720948

https://bugzilla.novell.com/show_bug.cgi?id=722045

https://bugzilla.novell.com/show_bug.cgi?id=722644

https://bugzilla.novell.com/show_bug.cgi?id=722918

https://bugzilla.novell.com/show_bug.cgi?id=723074

https://bugzilla.novell.com/show_bug.cgi?id=724087

https://bugzilla.novell.com/show_bug.cgi?id=726152

https://bugzilla.novell.com/show_bug.cgi?id=726174

https://bugzilla.novell.com/show_bug.cgi?id=727504

https://bugzilla.novell.com/show_bug.cgi?id=728559

https://bugzilla.novell.com/show_bug.cgi?id=728603

https://bugzilla.novell.com/show_bug.cgi?id=733864

https://bugzilla.novell.com/show_bug.cgi?id=734734

https://bugzilla.novell.com/show_bug.cgi?id=734781

http://www.openoffice.org/bugzilla/show_bug.cgi?id=101776

http://www.openoffice.org/bugzilla/show_bug.cgi?id=116448

http://www.openoffice.org/bugzilla/show_bug.cgi?id=117010

http://www.nessus.org/u?101ed7e9

http://www.nessus.org/u?f6b7e201

http://www.nessus.org/u?21a468a1

http://www.nessus.org/u?743a55f0

http://www.nessus.org/u?89346525

http://www.nessus.org/u?b5ddf211

http://www.nessus.org/u?b9298f95

http://www.nessus.org/u?09e5d1b1

http://www.nessus.org/u?9eaad229

http://www.nessus.org/u?b5c3a49a

http://www.nessus.org/u?d2c9c2ed

http://www.nessus.org/u?1a0fcb52

http://www.nessus.org/u?31a7ccec

http://www.nessus.org/u?3ce5d3d9

http://www.nessus.org/u?e3f1a2a9

http://www.nessus.org/u?c80bb455

http://www.nessus.org/u?d47f6934

http://www.nessus.org/u?1f31406d

http://www.nessus.org/u?b62efef8

http://www.nessus.org/u?c3f0b3a2

http://www.nessus.org/u?51296145

http://www.nessus.org/u?1e1bad05

http://www.nessus.org/u?260169fc

http://www.nessus.org/u?a914456a

http://www.nessus.org/u?6834ffda

http://www.nessus.org/u?10cda827

http://www.nessus.org/u?66ee1d68

https://bugs.launchpad.net/ubuntu/+source/libreoffice/+bug/854626

https://bugzilla.novell.com/show_bug.cgi?id=417818

https://bugzilla.novell.com/show_bug.cgi?id=621739

https://bugzilla.novell.com/show_bug.cgi?id=653688

https://bugzilla.novell.com/show_bug.cgi?id=655408

https://bugzilla.novell.com/show_bug.cgi?id=657909

https://bugzilla.novell.com/show_bug.cgi?id=677811

https://bugzilla.novell.com/show_bug.cgi?id=685123

https://bugzilla.novell.com/show_bug.cgi?id=693238

https://bugzilla.novell.com/show_bug.cgi?id=693388

https://bugzilla.novell.com/show_bug.cgi?id=695479

https://bugzilla.novell.com/show_bug.cgi?id=699334

https://bugzilla.novell.com/show_bug.cgi?id=703032

https://bugzilla.novell.com/show_bug.cgi?id=704274

https://bugzilla.novell.com/show_bug.cgi?id=705949

https://bugzilla.novell.com/show_bug.cgi?id=735533

https://bugzilla.novell.com/show_bug.cgi?id=736495

https://bugzilla.novell.com/show_bug.cgi?id=737190

https://bugzilla.novell.com/show_bug.cgi?id=737921

https://bugzilla.novell.com/show_bug.cgi?id=738113

https://bugzilla.novell.com/show_bug.cgi?id=740032

https://bugzilla.novell.com/show_bug.cgi?id=740117

https://bugzilla.novell.com/show_bug.cgi?id=740453

https://bugzilla.novell.com/show_bug.cgi?id=741043

https://bugzilla.novell.com/show_bug.cgi?id=741182

https://bugzilla.novell.com/show_bug.cgi?id=742178

https://bugzilla.novell.com/show_bug.cgi?id=746996

https://bugzilla.novell.com/show_bug.cgi?id=747471

https://bugzilla.novell.com/show_bug.cgi?id=748198

https://bugzilla.novell.com/show_bug.cgi?id=748548

https://bugzilla.redhat.com/show_bug.cgi?id=667082

https://bugzilla.redhat.com/show_bug.cgi?id=794679

https://features.opensuse.org/

https://lists.opensuse.org/opensuse-updates/2012-03/msg00052.html

Plugin Details

Severity: Medium

ID: 74584

File Name: openSUSE-2012-187.nasl

Version: 1.6

Type: local

Agent: unix

Published: 6/13/2014

Updated: 1/19/2021

Supported Sensors: Continuous Assessment, Frictionless Assessment Agent, Frictionless Assessment AWS, Frictionless Assessment Azure, Nessus Agent, Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 4.4

CVSS v2

Risk Factor: Medium

Base Score: 4.3

Vector: CVSS2#AV:N/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Information

CPE: p-cpe:/a:novell:opensuse:libreoffice-l10n-nl, p-cpe:/a:novell:opensuse:libreoffice-kde, p-cpe:/a:novell:opensuse:libreoffice-l10n-prebuilt, p-cpe:/a:novell:opensuse:libreoffice-l10n-ca, p-cpe:/a:novell:opensuse:libreoffice-l10n-hi-in, p-cpe:/a:novell:opensuse:libreoffice-l10n-pt-br, p-cpe:/a:novell:opensuse:libreoffice-help-et, p-cpe:/a:novell:opensuse:libreoffice-draw-extensions, p-cpe:/a:novell:opensuse:libreoffice-l10n-th, p-cpe:/a:novell:opensuse:libreoffice-l10n-ru, p-cpe:/a:novell:opensuse:libreoffice-l10n-km, p-cpe:/a:novell:opensuse:libreoffice-help-sl, p-cpe:/a:novell:opensuse:libreoffice-help-sv, p-cpe:/a:novell:opensuse:libreoffice-calc-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-icon-theme-galaxy, p-cpe:/a:novell:opensuse:libreoffice-l10n-da, p-cpe:/a:novell:opensuse:libreoffice-l10n-en-gb, p-cpe:/a:novell:opensuse:libreoffice-l10n-lt, p-cpe:/a:novell:opensuse:libreoffice-l10n-ss, p-cpe:/a:novell:opensuse:libreoffice-l10n-fr, p-cpe:/a:novell:opensuse:libreoffice-l10n-uk, p-cpe:/a:novell:opensuse:libreoffice-l10n-sh, p-cpe:/a:novell:opensuse:libreoffice-l10n-nr, p-cpe:/a:novell:opensuse:libreoffice-draw, p-cpe:/a:novell:opensuse:libreoffice-l10n-ar, p-cpe:/a:novell:opensuse:libreoffice-l10n-tg, p-cpe:/a:novell:opensuse:libreoffice-l10n-nn, p-cpe:/a:novell:opensuse:libreoffice-kde4-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-l10n-sv, p-cpe:/a:novell:opensuse:libreoffice-mailmerge, p-cpe:/a:novell:opensuse:libreoffice-officebean-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-calc, p-cpe:/a:novell:opensuse:libreoffice-base-drivers-postgresql, p-cpe:/a:novell:opensuse:libreoffice-help-cs, p-cpe:/a:novell:opensuse:libreoffice-writer-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-icon-theme-oxygen, p-cpe:/a:novell:opensuse:libreoffice-l10n-pa-in, p-cpe:/a:novell:opensuse:libreoffice-help-hi-in, p-cpe:/a:novell:opensuse:libreoffice-help-de, p-cpe:/a:novell:opensuse:libreoffice-icon-theme-tango, p-cpe:/a:novell:opensuse:libreoffice-base-drivers-postgresql-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-l10n-sk, p-cpe:/a:novell:opensuse:libreoffice-help-pt-br, p-cpe:/a:novell:opensuse:libreoffice-l10n-ka, p-cpe:/a:novell:opensuse:libreoffice-sdk-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-base-drivers-mysql-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-filters-optional, p-cpe:/a:novell:opensuse:libreoffice-filters-optional-debuginfo, cpe:/o:novell:opensuse:11.4, p-cpe:/a:novell:opensuse:libreoffice-help-ru, p-cpe:/a:novell:opensuse:libreoffice-testtool-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-l10n-gu-in, p-cpe:/a:novell:opensuse:libreoffice-math-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-l10n-hu, p-cpe:/a:novell:opensuse:libreoffice-help-en-gb, p-cpe:/a:novell:opensuse:libreoffice-gnome-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-pyuno-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-impress-extensions, p-cpe:/a:novell:opensuse:libreoffice-l10n-ko, p-cpe:/a:novell:opensuse:libreoffice-base, p-cpe:/a:novell:opensuse:libreoffice-help-zh-cn, p-cpe:/a:novell:opensuse:libreoffice-impress-extensions-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-l10n-ts, p-cpe:/a:novell:opensuse:libreoffice-l10n-vi, p-cpe:/a:novell:opensuse:libreoffice-help-es, p-cpe:/a:novell:opensuse:libreoffice-draw-extensions-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-l10n-es, p-cpe:/a:novell:opensuse:libreoffice-gnome, p-cpe:/a:novell:opensuse:libreoffice-l10n-nb, p-cpe:/a:novell:opensuse:libreoffice-l10n-hr, p-cpe:/a:novell:opensuse:libreoffice-help-da, p-cpe:/a:novell:opensuse:libreoffice-icon-theme-hicontrast, p-cpe:/a:novell:opensuse:libreoffice-writer-extensions, p-cpe:/a:novell:opensuse:libreoffice-math, p-cpe:/a:novell:opensuse:libreoffice-l10n-en-za, p-cpe:/a:novell:opensuse:libreoffice-l10n-cs, p-cpe:/a:novell:opensuse:libreoffice-l10n-sr, p-cpe:/a:novell:opensuse:libreoffice-help-it, p-cpe:/a:novell:opensuse:libreoffice-impress, p-cpe:/a:novell:opensuse:libreoffice-l10n-el, p-cpe:/a:novell:opensuse:libreoffice-l10n-af, p-cpe:/a:novell:opensuse:libreoffice-icon-theme-crystal, p-cpe:/a:novell:opensuse:libreoffice-l10n-xh, p-cpe:/a:novell:opensuse:libreoffice-l10n-ve, p-cpe:/a:novell:opensuse:libreoffice-icon-themes-prebuilt, p-cpe:/a:novell:opensuse:libreoffice-base-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-help-ja, p-cpe:/a:novell:opensuse:libreoffice-kde-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-l10n-et, p-cpe:/a:novell:opensuse:libreoffice-help-en-us, p-cpe:/a:novell:opensuse:libreoffice-l10n-fi, p-cpe:/a:novell:opensuse:libreoffice, p-cpe:/a:novell:opensuse:libreoffice-help-gu-in, p-cpe:/a:novell:opensuse:libreoffice-l10n-pl, p-cpe:/a:novell:opensuse:libreoffice-debugsource, p-cpe:/a:novell:opensuse:libreoffice-l10n-st, p-cpe:/a:novell:opensuse:libreoffice-l10n-be-by, p-cpe:/a:novell:opensuse:libreoffice-pyuno, p-cpe:/a:novell:opensuse:libreoffice-l10n-cy, p-cpe:/a:novell:opensuse:libreoffice-l10n-zh-tw, p-cpe:/a:novell:opensuse:libreoffice-base-extensions, p-cpe:/a:novell:opensuse:libreoffice-impress-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-testtool, p-cpe:/a:novell:opensuse:libreoffice-base-drivers-mysql, p-cpe:/a:novell:opensuse:libreoffice-l10n-he, p-cpe:/a:novell:opensuse:libreoffice-help-ko, p-cpe:/a:novell:opensuse:libreoffice-l10n-zu, p-cpe:/a:novell:opensuse:libreoffice-help-nl, p-cpe:/a:novell:opensuse:libreoffice-l10n-mk, p-cpe:/a:novell:opensuse:libreoffice-l10n-ga, p-cpe:/a:novell:opensuse:libreoffice-l10n-rw, p-cpe:/a:novell:opensuse:libreoffice-help-km, p-cpe:/a:novell:opensuse:libreoffice-sdk, p-cpe:/a:novell:opensuse:libreoffice-debuginfo, p-cpe:/a:novell:opensuse:libreoffice-writer, p-cpe:/a:novell:opensuse:libreoffice-l10n-tr, p-cpe:/a:novell:opensuse:libreoffice-help-gl, p-cpe:/a:novell:opensuse:libreoffice-help-pt, p-cpe:/a:novell:opensuse:libreoffice-l10n-pt, p-cpe:/a:novell:opensuse:libreoffice-help-zh-tw, p-cpe:/a:novell:opensuse:libreoffice-l10n-it, p-cpe:/a:novell:opensuse:libreoffice-kde4, p-cpe:/a:novell:opensuse:libreoffice-help-hu, p-cpe:/a:novell:opensuse:libreoffice-l10n-sl, p-cpe:/a:novell:opensuse:libreoffice-l10n-ja, p-cpe:/a:novell:opensuse:libreoffice-l10n-gl, p-cpe:/a:novell:opensuse:libreoffice-help-fr, p-cpe:/a:novell:opensuse:libreoffice-l10n-bg, p-cpe:/a:novell:opensuse:libreoffice-calc-extensions, p-cpe:/a:novell:opensuse:libreoffice-l10n-zh-cn, p-cpe:/a:novell:opensuse:libreoffice-officebean, p-cpe:/a:novell:opensuse:libreoffice-help-en-za, p-cpe:/a:novell:opensuse:libreoffice-help-pl, p-cpe:/a:novell:opensuse:libreoffice-branding-upstream, p-cpe:/a:novell:opensuse:libreoffice-l10n-de, p-cpe:/a:novell:opensuse:libreoffice-l10n-br

Required KB Items: Host/local_checks_enabled, Host/SuSE/release, Host/SuSE/rpm-list, Host/cpu

Patch Publication Date: 3/29/2012

Reference Information

CVE: CVE-2012-0037