CNNVD-202512-2708 Information

CNNVD ID

CNNVD-202512-2708

CVE-2025-14714

  • CNNVD Published: 2025-12-15

Description (Chinese)

LibreOffice是The Document基金会的一套开源的办公软件套件。 LibreOffice 25.2版本至25.2.4之前版本存在安全漏洞,该漏洞源于应用程序捆绑的解释器继承主应用程序的TCC权限,可能导致认证绕过。

Description (English)

LibreOffice is an open-source office software package of The Document Foundation. Prior versions of LibreOffice 25.2 to 25.2.4 had a security loophole, which stemmed from the fact that the application bundled interpreter inherited TCC privileges from the main application and could result in the authentication being bypassed.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

The Document

Published

2025-12-15

Last Modified

2026-02-24

References

https://www.libreoffice.org/about-us/security/advisories/cve-2025-14714

Patch

https://www.libreoffice.org/download/download-libreoffice/

Share on: