Oval Definition:oval:org.opensuse.security:def:52947
Revision Date:2020-12-01Version:1
Title:Security update for libepubgen, liblangtag, libmwaw, libnumbertext, libreoffice, libstaroffice, libwps, myspell-dictionaries, xmlsec1 (Moderate)
Description:





This update for LibreOffice, libepubgen, liblangtag, libmwaw, libnumbertext, libstaroffice, libwps, myspell-dictionaries, xmlsec1 fixes the following issues:

LibreOffice was updated to 6.1.3.2 (fate#326624) and contains new features and lots of bugfixes:

The full changelog can be found on:

https://wiki.documentfoundation.org/ReleaseNotes/6.1

Bugfixes:

- bsc#1095639 Exporting to PPTX results in vertical labels being shown horizontally - bsc#1098891 Table in PPTX misplaced and partly blue - bsc#1088263 Labels in chart change (from white and other colors) to black when saving as PPTX - bsc#1095601 Exporting to PPTX shifts arrow shapes quite a bit

- Add more translations: * Belarusian * Bodo * Dogri * Frisian * Gaelic * Paraguayan_Guaran * Upper_Sorbian * Konkani * Kashmiri * Luxembourgish * Monglolian * Manipuri * Burnese * Occitan * Kinyarwanda * Santali * Sanskrit * Sindhi * Sidamo * Tatar * Uzbek * Upper Sorbian * Venetian * Amharic * Asturian * Tibetian * Bosnian * English GB * English ZA * Indonesian * Icelandic * Georgian * Khmer * Lao * Macedonian * Nepali * Oromo * Albanian * Tajik * Uyghur * Vietnamese * Kurdish

- Try to build all languages see bsc#1096360 - Make sure to install the KDE5/Qt5 UI/filepicker - Try to implement safeguarding to avoid bsc#1050305 - Disable base-drivers-mysql as it needs mysqlcppcon that is only for mysql and not mariadb, causes issues bsc#1094779 * Users can still connect using jdbc/odbc - Fix java detection on machines with too many cpus

- CVE-2018-10583: An information disclosure vulnerability occured when LibreOffice automatically processed and initiated an SMB connection embedded in a malicious file, as demonstrated by xlink:href=file://192.168.0.2/test.jpg within an office:document-content element in a .odt XML document. (bsc#1091606)

libepubgen was updated to 0.1.1:

- Avoid
inside

or . - Avoid writin vertical-align attribute without a value. - Fix generation of invalid XHTML when there is a link starting at the beginning of a footnote. - Handle relative width for images. - Fixed layout: write chapter names to improve navigation. - Support writing mode. - Start a new HTML file at every page span in addition to the splits induced by the chosen split method. This is to ensure that specified writing mode works correctly, as it is HTML attribute.

liblangtag was updated to 0.6.2:

- use standard function - fix leak in test

libmwaw was updated to 0.3.14:

- Support MS Multiplan 1.1 files

libnumbertext was update to 1.0.5:

- Various fixes in numerical calculations and issues reported on libreoffice tracker

libstaroffice was updated to 0.0.6:

- retrieve some StarMath's formula, - retrieve some charts as graphic, - retrieve some fields in sda/sdc/sdp text-boxes, - .sdw: retrieve more attachments.

libwps was updated to 0.4.9:

- QuattroPro: add parser to .wb3 files - Multiplan: add parser to DOS v1-v3 files - charts: try to retrieve charts in .wk*, .wq* files - QuattroPro: add parser to .wb[12] files

myspell-dictionaries was updated to 20181025:

- Turkish dictionary added - Updated French dictionary

xmlsec1 was updated to 1.2.26:

- Added xmlsec-mscng module based on Microsoft Cryptography API: Next Generation - Added support for GOST 2012 and fixed CryptoPro CSP provider for GOST R 34.10-2001 in xmlsec-mscrypto

Family:unixClass:patch
Status:Reference(s):1002991
1002995
1002998
1003000
1003002
1003012
1003017
1003023
1050305
1088263
1091606
1094779
1095601
1095639
1096360
1098891
1100352
1104876
1129715
1137526
1154064
829013
857491
880317
960674
982176
987577
988032
991436
991622
991710
995034
CVE-2008-3825
CVE-2009-0316
CVE-2009-1384
CVE-2009-2473
CVE-2009-2474
CVE-2009-4492
CVE-2010-0541
CVE-2010-0750
CVE-2011-1004
CVE-2011-1005
CVE-2011-1485
CVE-2011-2199
CVE-2011-2895
CVE-2011-4815
CVE-2012-0247
CVE-2012-0248
CVE-2012-1185
CVE-2012-1186
CVE-2013-4118
CVE-2013-4288
CVE-2013-7447
CVE-2014-0250
CVE-2014-0791
CVE-2014-8354
CVE-2014-8355
CVE-2014-8562
CVE-2014-8716
CVE-2014-9805
CVE-2014-9806
CVE-2014-9807
CVE-2014-9808
CVE-2014-9809
CVE-2014-9810
CVE-2014-9811
CVE-2014-9812
CVE-2014-9813
CVE-2014-9814
CVE-2014-9815
CVE-2014-9816
CVE-2014-9817
CVE-2014-9818
CVE-2014-9819
CVE-2014-9820
CVE-2014-9821
CVE-2014-9822
CVE-2014-9823
CVE-2014-9824
CVE-2014-9825
CVE-2014-9826
CVE-2014-9828
CVE-2014-9829
CVE-2014-9830
CVE-2014-9831
CVE-2014-9832
CVE-2014-9833
CVE-2014-9834
CVE-2014-9835
CVE-2014-9836
CVE-2014-9837
CVE-2014-9838
CVE-2014-9839
CVE-2014-9840
CVE-2014-9841
CVE-2014-9842
CVE-2014-9843
CVE-2014-9844
CVE-2014-9845
CVE-2014-9846
CVE-2014-9847
CVE-2014-9848
CVE-2014-9849
CVE-2014-9850
CVE-2014-9851
CVE-2014-9852
CVE-2014-9853
CVE-2014-9854
CVE-2015-3218
CVE-2015-3255
CVE-2015-3256
CVE-2015-4625
CVE-2015-8710
CVE-2015-8894
CVE-2015-8895
CVE-2015-8896
CVE-2015-8897
CVE-2015-8898
CVE-2015-8900
CVE-2015-8901
CVE-2015-8902
CVE-2015-8903
CVE-2016-1248
CVE-2016-2851
CVE-2016-3714
CVE-2016-3715
CVE-2016-3716
CVE-2016-3717
CVE-2016-3718
CVE-2016-4562
CVE-2016-4563
CVE-2016-4564
CVE-2016-5010
CVE-2016-5116
CVE-2016-5118
CVE-2016-5407
CVE-2016-5687
CVE-2016-5688
CVE-2016-5689
CVE-2016-5690
CVE-2016-5691
CVE-2016-5841
CVE-2016-5842
CVE-2016-6128
CVE-2016-6132
CVE-2016-6161
CVE-2016-6207
CVE-2016-6214
CVE-2016-6491
CVE-2016-6520
CVE-2016-6905
CVE-2016-7942
CVE-2016-7944
CVE-2016-7945
CVE-2016-7946
CVE-2016-7947
CVE-2016-7948
CVE-2016-7949
CVE-2016-7950
CVE-2016-7951
CVE-2016-7952
CVE-2016-7953
CVE-2017-5953
CVE-2017-6349
CVE-2017-6350
CVE-2018-10583
CVE-2018-13301
CVE-2019-12730
CVE-2019-17542
CVE-2019-9718
SUSE-SU-2016:0178-1
SUSE-SU-2016:2303-1
SUSE-SU-2016:2505-1
SUSE-SU-2016:2506-1
SUSE-SU-2018:3683-1
SUSE-SU-2019:3184-2
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
openSUSE Leap 15.1 NonFree
SUSE Linux Enterprise Desktop 11 SP2
SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Desktop 11 SP4
SUSE Linux Enterprise Desktop 12
SUSE Linux Enterprise Desktop 12 SP1
SUSE Linux Enterprise Desktop 12 SP2
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Desktop 12 SP4
SUSE Linux Enterprise Module for additional PackageHub packages 15
SUSE Linux Enterprise Module for additional PackageHub packages 15 SP1
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud 6
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • gnome-online-accounts-3.26.2-lp150.3 is installed
  • OR gnome-online-accounts-lang-3.26.2-lp150.3 is installed
  • OR libgoa-1_0-0-3.26.2-lp150.3 is installed
  • OR libgoa-backend-1_0-1-3.26.2-lp150.3 is installed
  • OR typelib-1_0-Goa-1_0-3.26.2-lp150.3 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • libvirt-5.1.0-lp151.7.3 is installed
  • OR libvirt-admin-5.1.0-lp151.7.3 is installed
  • OR libvirt-bash-completion-5.1.0-lp151.7.3 is installed
  • OR libvirt-client-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-config-network-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-config-nwfilter-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-driver-interface-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-driver-libxl-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-driver-lxc-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-driver-network-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-driver-nodedev-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-driver-nwfilter-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-driver-qemu-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-driver-secret-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-driver-storage-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-driver-storage-core-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-driver-storage-disk-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-driver-storage-gluster-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-driver-storage-iscsi-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-driver-storage-logical-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-driver-storage-mpath-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-driver-storage-rbd-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-driver-storage-scsi-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-hooks-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-lxc-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-qemu-5.1.0-lp151.7.3 is installed
  • OR libvirt-daemon-xen-5.1.0-lp151.7.3 is installed
  • OR libvirt-devel-5.1.0-lp151.7.3 is installed
  • OR libvirt-devel-32bit-5.1.0-lp151.7.3 is installed
  • OR libvirt-doc-5.1.0-lp151.7.3 is installed
  • OR libvirt-libs-5.1.0-lp151.7.3 is installed
  • OR libvirt-lock-sanlock-5.1.0-lp151.7.3 is installed
  • OR libvirt-nss-5.1.0-lp151.7.3 is installed
  • OR wireshark-plugin-libvirt-5.1.0-lp151.7.3 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 NonFree is installed
  • AND opera-63.0.3368.66-lp151.2.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP2 is installed
  • AND Package Information
  • coreutils-8.12-6.25.29 is installed
  • OR coreutils-lang-8.12-6.25.29 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP3 is installed
  • AND Package Information
  • cpio-2.9-75.78 is installed
  • OR cpio-lang-2.9-75.78 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP4 is installed
  • AND Package Information
  • libopenssl0_9_8-0.9.8j-0.89 is installed
  • OR libopenssl0_9_8-32bit-0.9.8j-0.89 is installed
  • OR openssl-0.9.8j-0.89 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 is installed
  • AND Package Information
  • libxml2-2.9.1-17 is installed
  • OR libxml2-2-2.9.1-17 is installed
  • OR libxml2-2-32bit-2.9.1-17 is installed
  • OR libxml2-tools-2.9.1-17 is installed
  • OR python-libxml2-2.9.1-17 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP1 is installed
  • AND Package Information
  • libpolkit0-0.113-4 is installed
  • OR libpolkit0-32bit-0.113-4 is installed
  • OR polkit-0.113-4 is installed
  • OR typelib-1_0-Polkit-1_0-0.113-4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND Package Information
  • ImageMagick-6.8.8.1-33 is installed
  • OR libMagick++-6_Q16-3-6.8.8.1-33 is installed
  • OR libMagickCore-6_Q16-1-6.8.8.1-33 is installed
  • OR libMagickCore-6_Q16-1-32bit-6.8.8.1-33 is installed
  • OR libMagickWand-6_Q16-1-6.8.8.1-33 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND Package Information
  • pam_krb5-2.4.4-4 is installed
  • OR pam_krb5-32bit-2.4.4-4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • AND Package Information
  • gvim-7.4.326-16 is installed
  • OR vim-7.4.326-16 is installed
  • OR vim-data-7.4.326-16 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for additional PackageHub packages 15 is installed
  • AND Package Information
  • libxmlsec1-gcrypt1-1.2.26-3.3 is installed
  • OR libxmlsec1-gnutls1-1.2.26-3.3 is installed
  • OR libxmlsec1-openssl1-1.2.26-3.3 is installed
  • OR xmlsec1-1.2.26-3.3 is installed
  • OR xmlsec1-gnutls-devel-1.2.26-3.3 is installed
  • OR xmlsec1-openssl-devel-1.2.26-3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for additional PackageHub packages 15 SP1 is installed
  • AND Package Information
  • ffmpeg-3.4.2-4.27 is installed
  • OR libavdevice57-3.4.2-4.27 is installed
  • OR libavfilter6-3.4.2-4.27 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND Package Information
  • gvim-7.4.326-2 is installed
  • OR vim-7.4.326-2 is installed
  • OR vim-data-7.4.326-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • kgraft-patch-3_12_74-60_64_107-default-8-2 is installed
  • OR kgraft-patch-3_12_74-60_64_107-xen-8-2 is installed
  • OR kgraft-patch-SLE12-SP1_Update_32-8-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND davfs2-1.5.2-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • xen-4.7.5_04-43.33 is installed
  • OR xen-doc-html-4.7.5_04-43.33 is installed
  • OR xen-libs-4.7.5_04-43.33 is installed
  • OR xen-libs-32bit-4.7.5_04-43.33 is installed
  • OR xen-tools-4.7.5_04-43.33 is installed
  • OR xen-tools-domU-4.7.5_04-43.33 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • kernel-default-4.4.121-92.95 is installed
  • OR kernel-default-base-4.4.121-92.95 is installed
  • OR kernel-default-devel-4.4.121-92.95 is installed
  • OR kernel-devel-4.4.121-92.95 is installed
  • OR kernel-macros-4.4.121-92.95 is installed
  • OR kernel-source-4.4.121-92.95 is installed
  • OR kernel-syms-4.4.121-92.95 is installed
  • OR lttng-modules-2.7.1-9.6 is installed
  • OR lttng-modules-kmp-default-2.7.1_k4.4.121_92.95-9.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_121-92_80-default-3-2 is installed
  • OR kgraft-patch-SLE12-SP2_Update_22-3-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND binutils-2.26.1-9.12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND sudo-1.8.20p2-3.17 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_175-94_79-default-4-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_23-4-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • gdk-pixbuf-2.34.0-19.17 is installed
  • OR gdk-pixbuf-lang-2.34.0-19.17 is installed
  • OR gdk-pixbuf-query-loaders-2.34.0-19.17 is installed
  • OR gdk-pixbuf-query-loaders-32bit-2.34.0-19.17 is installed
  • OR libgdk_pixbuf-2_0-0-2.34.0-19.17 is installed
  • OR libgdk_pixbuf-2_0-0-32bit-2.34.0-19.17 is installed
  • OR typelib-1_0-GdkPixbuf-2_0-2.34.0-19.17 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • cups-1.7.5-20.17 is installed
  • OR cups-client-1.7.5-20.17 is installed
  • OR cups-libs-1.7.5-20.17 is installed
  • OR cups-libs-32bit-1.7.5-20.17 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 6 is installed
  • AND python-Beaker-1.6.4-0.7 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND Package Information
  • kernel-default-4.4.121-92.109 is installed
  • OR kernel-default-base-4.4.121-92.109 is installed
  • OR kernel-default-devel-4.4.121-92.109 is installed
  • OR kernel-default-man-4.4.121-92.109 is installed
  • OR kernel-devel-4.4.121-92.109 is installed
  • OR kernel-macros-4.4.121-92.109 is installed
  • OR kernel-source-4.4.121-92.109 is installed
  • OR kernel-syms-4.4.121-92.109 is installed
  • OR kgraft-patch-4_4_121-92_109-default-1-3.5 is installed
  • OR kgraft-patch-SLE12-SP2_Update_29-1-3.5 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • libsolv-0.6.36-2.16 is installed
  • OR libsolv-tools-0.6.36-2.16 is installed
  • OR libzypp-16.20.0-2.39 is installed
  • OR perl-solv-0.6.36-2.16 is installed
  • OR python-solv-0.6.36-2.16 is installed
  • OR zypper-1.13.51-21.26 is installed
  • OR zypper-log-1.13.51-21.26 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • ruby2.1-rubygem-loofah-2.0.2-3.8 is installed
  • OR rubygem-loofah-2.0.2-3.8 is installed
  • BACK