CVE-2018-10583
An information disclosure vulnerability occurs when LibreOffice 6.0.3 and Apache OpenOffice Writer 4.1.5 automatically process and initiate an SMB connection embedded in a malicious file, as demonstrated by xlink:href=file://192.168.0.2/test.jpg within…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 78.3%, higher than 100% of all known CVEs. Patch or mitigate before the next change window.
Description
An information disclosure vulnerability occurs when LibreOffice 6.0.3 and Apache OpenOffice Writer 4.1.5 automatically process and initiate an SMB connection embedded in a malicious file, as demonstrated by xlink:href=file://192.168.0.2/test.jpg within an office:document-content element in a .odt XML document.
- CVSS 3.0
- 7.5 HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
- EPSS
- 78.34% probability · 100th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-200
- Affected
- libreoffice/libreoffice · apache/openoffice · debian/debian linux · redhat/enterprise linux desktop · redhat/enterprise linux server · redhat/enterprise linux workstation · canonical/ubuntu linux
- Source
- cve@mitre.org
References
- http://seclists.org/fulldisclosure/2020/Oct/26
- http://secureyourit.co.uk/wp/2018/05/01/creating-malicious-odt-files/Exploit, Mitigation, Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:3054Third Party Advisory
- https://lists.apache.org/thread.html/0598708912978b27121b2e380b44a225c706aca882cd1da6a955a0af%40%3Cdev.openoffice.apache.org%3E
- https://lists.apache.org/thread.html/6c65f22306c36c95e75f8d2b7f49cfcbeb0a4614245c20934612a39d%40%3Cdev.openoffice.apache.org%3E
- https://lists.apache.org/thread.html/c8fd59ac77b42aac90eb5c59b87f3ab59b5e0c3bfb4819aa649a2909%40%3Cdev.openoffice.apache.org%3E
- https://security-tracker.debian.org/tracker/CVE-2018-10583Issue Tracking, Third Party Advisory
- https://usn.ubuntu.com/3883-1/Third Party Advisory
- https://www.exploit-db.com/exploits/44564/Exploit, Third Party Advisory, VDB Entry
- http://seclists.org/fulldisclosure/2020/Oct/26
- http://secureyourit.co.uk/wp/2018/05/01/creating-malicious-odt-files/Exploit, Mitigation, Third Party Advisory
- https://access.redhat.com/errata/RHSA-2018:3054Third Party Advisory
- https://lists.apache.org/thread.html/0598708912978b27121b2e380b44a225c706aca882cd1da6a955a0af%40%3Cdev.openoffice.apache.org%3E
- https://lists.apache.org/thread.html/6c65f22306c36c95e75f8d2b7f49cfcbeb0a4614245c20934612a39d%40%3Cdev.openoffice.apache.org%3E
- https://lists.apache.org/thread.html/c8fd59ac77b42aac90eb5c59b87f3ab59b5e0c3bfb4819aa649a2909%40%3Cdev.openoffice.apache.org%3E
- https://security-tracker.debian.org/tracker/CVE-2018-10583Issue Tracking, Third Party Advisory
- https://usn.ubuntu.com/3883-1/Third Party Advisory
- https://www.exploit-db.com/exploits/44564/Exploit, Third Party Advisory, VDB Entry
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.