CVE-2024-12425 – LibreOffice Path Traversal Font Vulnerability

CVE ID : CVE-2024-12425

Published : Jan. 7, 2025, 12:15 p.m. | 1 hour ago

Description : Improper Limitation of a Pathname to a Restricted Directory (‘Path Traversal’) vulnerability in The Document Foundation LibreOffice allows Absolute Path Traversal.

An attacker can write to arbitrary locations, albeit suffixed with “.ttf”, by supplying a file in a format that supports embedded font files.

This issue affects LibreOffice: from 24.8 before
Severity: 0.0 | NA

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

CVE-2024-12425 – LibreOffice Path Traversal Font Vulnerability