CVE-2023-6185
Libreoffice 7.5.0 – 7.5.9
Raw vector
CVSS:3.1/AV:A/AC:L/PR:L/UI:R/S:C/C:L/I:H/A:HSummary
CVE-2023-6185 is a high-severity an unspecified weakness vulnerability in Libreoffice Libreoffice. Its CVSS base score is 8.3 (High).
Operationally, ranked in the top 40% of CVEs by exploit likelihood; it is not currently listed in the CISA KEV catalog.
EU & UK References
- 🇪🇺 ENISA EUVD: EUVD-2023-58434
Vulnerability Data
Improper Input Validation vulnerability in GStreamer integration of The Document Foundation LibreOffice allows an attacker to execute arbitrary GStreamer plugins. In affected versions the filename of the embedded video is not sufficiently escaped when passed to GStreamer enabling an attacker…
more
to run arbitrary gstreamer plugins depending on what plugins are installed on the target system.
- CWE(s)
Related Threats
CVEs Like This One
Affected Assets
Mitigating Controls
No mitigating controls mapped yet. The per-CVE control annotator has not reached this CVE.