Linuxsecurity LibreOffice Vulnerabilities Disclosed in USN-8868
Article Content
- •LibreOffice has multiple critical vulnerabilities affecting various versions.
- •Attackers could exploit these flaws for denial of service or arbitrary code execution.
- •Patches are available; users should update their systems immediately.
Multiple vulnerabilities were discovered in LibreOffice that could allow attackers to crash the application or execute arbitrary code. Key issues include improper handling of WMF image imports (CVE-2026-63272), PDF document imports (CVE-2026-63273, CVE-2026-63274), and CFF fonts (CVE-2026-63275, CVE-2026-63276). Additionally, vulnerabilities were found in URL validation (CVE-2026-63278) and PICT image imports (CVE-2026-63279). These vulnerabilities affect various versions of LibreOffice across different Ubuntu distributions. Patches have been released to address these issues, and users are advised to update their systems promptly.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track Ubuntu and CVE-2026-50593 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Common questions
Which versions of LibreOffice are affected?
What types of attacks can these vulnerabilities enable?
How urgent is it to apply the patches?
Continue Reading
Critical Authentication Bypass in Cisco Catalyst SD-WAN Manager Exploited On September 30, 2026, Cisco disclosed a critical vulnerability (CVE-2026-76504) in the Catalyst SD-WAN Manager that allows unauthenticated remote attackers to bypass authentication and gain admin-level access to the system. This flaw stems from improper handling of URI encoding in HTTP requests, enabling attackers to…