Heap Buffer Overflow in LibreOffice Draw PDF Import Feature
CVE-2026-63274
5.4MEDIUM
What is CVE-2026-63274?
A vulnerability exists in LibreOffice Draw's ability to import PDF documents, specifically a heap buffer overflow associated with stream object handling. When processing a stream object, the application fails to verify the length of the stream against the actual bytes present, leading to a risk of writing beyond the allocated buffer space. This oversight can result in potential arbitrary code execution or instability in the application. Updated versions have implemented improved checks to clamp the declared length of the stream to the actual bytes read, mitigating the risk.
Affected Version(s)
LibreOffice 26.2
References
CVSS V4
Score:
5.4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
Unknown
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Claude, found by Anthropic using agents to study the security of open-source projects
Ada Logics, validating and reporting
Caolán McNamara of Collabora Productivity
