From owner-freebsd-questions@freebsd.org Fri Aug 19 21:11:27 2016 Return-Path: Delivered-To: freebsd-questions@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id A0F52BC03E1 for ; Fri, 19 Aug 2016 21:11:27 +0000 (UTC) (envelope-from starikarp@yandex.com) Received: from forward4m.cmail.yandex.net (forward4m.cmail.yandex.net [IPv6:2a02:6b8:b030::1b]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client CN "forwards.mail.yandex.net", Issuer "Yandex CA" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 5FF9A1333 for ; Fri, 19 Aug 2016 21:11:26 +0000 (UTC) (envelope-from starikarp@yandex.com) Received: from smtp2p.mail.yandex.net (smtp2p.mail.yandex.net [IPv6:2a02:6b8:0:1472:2741:0:8b6:7]) by forward4m.cmail.yandex.net (Yandex) with ESMTP id 65BF0206EB for ; Sat, 20 Aug 2016 00:11:23 +0300 (MSK) Received: from smtp2p.mail.yandex.net (localhost.localdomain [127.0.0.1]) by smtp2p.mail.yandex.net (Yandex) with ESMTP id 3BC2F1A80034 for ; Sat, 20 Aug 2016 00:11:22 +0300 (MSK) Received: by smtp2p.mail.yandex.net (nwsmtp/Yandex) with ESMTPSA id OYuDleqEve-BLnqfpDU; Sat, 20 Aug 2016 00:11:21 +0300 (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (Client certificate not present) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=yandex.com; s=mail; t=1471641082; bh=x3QpEWU9ufW3XNmJectubHQ3IzhB6MEcUl/NCkT2I60=; h=Message-ID:Subject:From:To:Date; b=GPkeBGfgTVRsu00Zlf2Wp+Bb7TlYVYGsjYwqHZn4a0btwcA7QEAq+Ip8hWHOYRAWD N0pi4tvkNM7UzvKqhAiY+TTCphoffFtk3SS0eYvGOMmZ54yTbUtgWWZyY2nA8ZRSe+ RjGXtAcXNi9wXBeBkRMcRqZMMCyms/dVVlnhxDSg= Authentication-Results: smtp2p.mail.yandex.net; dkim=pass header.i=@yandex.com X-Yandex-Suid-Status: 1 0 Message-ID: <1471641079.53058.3.camel@yandex.com> Subject: LibreOffice vulnerabilities From: Stari Karp To: FreeBSD Questions Date: Fri, 19 Aug 2016 17:11:19 -0400 Content-Type: text/plain; charset="UTF-8" X-Mailer: Evolution 3.18.5.1 FreeBSD GNOME Team Port Mime-Version: 1.0 Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.22 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 19 Aug 2016 21:11:27 -0000 Hi! I have installed and I use LibreOffice Version: 5.0.6.3 Build ID: FreeBSD ports 5.0.6_2 Locale: en-US (en_US.UTF-8). When I run pkg audit I get: libreoffice-5.0.6_2 is vulnerable: libreoffice -- use-after-free vulnerability CVE: CVE-2016-4324 WWW: https://vuxml.FreeBSD.org/freebsd/3159cd70-4aaa-11e6-a7bd-14dae9d2 10b8.html It is dangerous for using it or is safe, please? Thank you. SK