Vulnerability Description
It is possible for an attacker to manipulate the timestamp of signed documents. All versions of Apache OpenOffice up to 4.1.10 are affected. Users are advised to update to version 4.1.11. See CVE-2021-25634 for the LibreOffice advisory.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Apache | Openoffice | < 4.1.11 |
Related Weaknesses (CWE)
References
- https://lists.apache.org/thread.html/ra74d5057cdc781a36286a83e8bcbc90a7678f030aeMailing ListVendor Advisory
- https://lists.apache.org/thread.html/rc5c277cb83e335696657c5f27da1d1e2b5cb48346b
- https://lists.apache.org/thread.html/ra74d5057cdc781a36286a83e8bcbc90a7678f030aeMailing ListVendor Advisory
- https://lists.apache.org/thread.html/rc5c277cb83e335696657c5f27da1d1e2b5cb48346b
FAQ
What is CVE-2021-41831?
CVE-2021-41831 is a vulnerability with a CVSS score of 5.3 (MEDIUM). It is possible for an attacker to manipulate the timestamp of signed documents. All versions of Apache OpenOffice up to 4.1.10 are affected. Users are advised to update to version 4.1.11. See CVE-2021...
How severe is CVE-2021-41831?
CVE-2021-41831 has been rated MEDIUM with a CVSS base score of 5.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-41831?
Check the references section above for vendor advisories and patch information. Affected products include: Apache Openoffice.