Potential Vulnerability in Certificate Validation User Interface of LibreOffice
CVE-2024-6472
What is CVE-2024-6472?
LibreOffice contains a vulnerability in its certificate validation user interface that impacts the handling of signed macros. When a document containing a signed macro is opened, the application generates a warning if the macro's verification fails. However, previous versions allowed users to misinterpret the failure message and mistakenly enable the macros regardless of the verification status. This behavior can lead to potential security risks, as malicious code could be executed if the user overrides the warning. The flaw affects LibreOffice versions prior to 24.2.5, requiring immediate attention to maintain secure document handling.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
LibreOffice 24.2 < 24.2.5
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
