SUSE-FU-2022:0039-1

    Dashboard / Vulnerabilities / SUSE-FU-2022:0039-1

    SUSE-FU-2022:0039-1

    Published: 10 Jan 2022Last Modified: 2 May 2025
    Upstream:
    Aliases:

    Summary: Feature update for zxing-cpp libreoffice

    Details: This feature update for zxing-cpp and libreoffice fixes the following issues: Update LibreOffice from version 7.1.3.2 to 7.2.3.2 (jsc#SLE-18213): - Fix external URL connections issues when WebDav is built using `libserf`. (bsc#1187173, bsc#1186871) - Fix an issue with PPTX where one column becomes two within one text frame. (bsc#1182969) - Fix inteaction between multi-column shape text and automatic height. (bsc#1187982) - Fix interaction of transparent cell fill and transparent shadow. (bsc#1189813) - Fix lost bullet mode while typing and text is not visible. - Use external `poppler` version 21.01.0 (jsc#SLE-18213) - Use external `CMIS` version 0.5.2 - Update external `boost` to version 1.75.0 - Update external `pdfium` to version 4500 - Update external `skia` to version 'm90' - Do not use `qrcodegen-devel` but move to `zxing-cpp` (jsc#SLE-18213) - Keep upstream desktop file names (bsc#1183655) - Display math icon (bsc#1180479) - Source `profile.d/alljava.sh` from either `/etc` (if found) or `/usr/etc`. Update libserf from version 1.3.7 to version 1.3.9 (jsc#SLE-18213): - `serf` is now Apache Software Foundation project - Reset state variables when resetting connection - Fix some usages of the openssl BIO api - Improve handling of bad data in the response state line - Support more overrides via SCons arguments - Adapt to OpenSSL 1.1.x api - CVE-2014-3566: Fix the handling of very large gzip-encoded HTTP responses and disables SSLv2 and SSLv3. (bsc#901968) * CRC calculation error for gzipped http reponses > 4GB. * SSPI CredHandle not freed when APR pool is destroyed. * Disable SSLv2 and SSLv3 as both are broken Provide `zxing-cpp` 1.2.0 as new LibreOffice dependency (jsc#SLE-18213): - Do not build examples to avoid a cycle with `QT5Multimedia` - Use `cmake3-full` package instead of `cmake` on SUSE Linux Enterprise 12 - Do not build examples on SUSE Linux Enterprise 12 - Only build blackbox tests on openSUSE Tumbleweed - New BarcodeFormat - New ZXingQtCamReader demo app based on `QtMultimedia` and `QtQuick` - New QRCode reader, faster and better support for rotated symbols - Add `Structured Append` support for `DataMatrix`, `Aztec` and `MaxiCode` - Add `DMRE` support for `DataMatrix` - Switch to the reimplemented 1D detectors, about 5x faster - Faster and more capable `isPure` detection for all 2D codes - 20% faster `ReedSolomon` error correction. - `ReedSolomon` error detection code 2x speedup. - PDF417 is faster and supports flipped symbols - Reduced false positive rate for `UPC/EAN` barcodes and improved Add-On symbol handling - Fix country-code metadata decoding for UPC/EAN codes. - Proper ECI handling in all 2D barcodes - Add `baselibs.conf` - Many performance improvements for 1D readers - More meta-data exported when reading specific format - Improve DataMatrix encoder - Add interface to simplify basic usage - WASM API to support pixels array as input - 'LuminanceSource' based API is now deprecated but still compiles. - New BarcodeFormats flag type to specify the set of barcodes to look for. - New simplified and consistent Python API - Slightly improved QRCode detection for rotated symbols.

    Affected packages

    Package

    Name: libreoffice

    Purl: pkg:rpm/suse/libreoffice&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP5

    Affected ranges

    Type: ECOSYSTEM

    Events:

    Introduced- 0
    Fixed -7.2.3.2-48.11.4

    Affected versions

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High
    SUSE-FU-2022:0039-1 | CVE-DB