-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sat, 31 May 2025 05:25:27 +0200 Source: libreoffice Architecture: source Version: 1:7.0.4-4+deb11u13 Distribution: bullseye-security Urgency: medium Maintainer: Debian LibreOffice Maintainers <debian-openoffice@lists.debian.org> Changed-By: Daniel Leidert <dleidert@debian.org> Changes: libreoffice (1:7.0.4-4+deb11u13) bullseye-security; urgency=medium . * Non-maintainer upload by the Debian LTS team. * d/patches/CVE-2025-1080.patch: Add patch to fix CVE-2025-1080. - Filter out more unwanted command URIs to fix an arbitrary script execution via protocol. * d/patches/CVE-2025-2866.patch: Add patch to fix CVE-2025-2866. - For PDF signatures with SubFilter == adbe.pkcs7.sha1, verify the actual (public-key) signature after the hash values compare equal. Checksums-Sha1: 5b368faede8b3f58a472360a22da1d41552d8ac0 31324 libreoffice_7.0.4-4+deb11u13.dsc ce830e2b59be9699f46df84ac0a6610b3d2f4f5a 19548080 libreoffice_7.0.4-4+deb11u13.debian.tar.xz 42b6aad61a6173ae573aa70abad12fe39f12a434 119960 libreoffice_7.0.4-4+deb11u13_amd64.buildinfo Checksums-Sha256: c9084313c549e46d4722ac429f3aa011e42a60f07ad36c973e62e0455e4da1a9 31324 libreoffice_7.0.4-4+deb11u13.dsc 9161c49b17459e09afb48550152ceb25045dfcb07ab86301b1b82c8eb4dd13b6 19548080 libreoffice_7.0.4-4+deb11u13.debian.tar.xz 6afd0b53ef144aa14012754af242bd6bb7c5ad6feffd762fd8061dff38c3ed82 119960 libreoffice_7.0.4-4+deb11u13_amd64.buildinfo Files: d0919c2307e81199dbec874d73c07ae0 31324 editors optional libreoffice_7.0.4-4+deb11u13.dsc 65f99302308a33a8a25c4325b6136a26 19548080 editors optional libreoffice_7.0.4-4+deb11u13.debian.tar.xz 2fc2dfbc4f97564692251d49268c7370 119960 editors optional libreoffice_7.0.4-4+deb11u13_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEvu1N7VVEpMA+KD3HS80FZ8KW0F0FAmg7g5AACgkQS80FZ8KW 0F0XHw//QuN268SntY9EhBCFUlU9z+v+wJSs0UWiW3dFv5koGey1FXMeXR/GlEgr tt69GQ2rVMYtW7OmhQaZh7UnMcDDnKXWHfllmEW8P00bWBeMf1NOOJxc/X4YcO5c DKW15VDWYEzR18K0PC6oRk/hJBh1++vaKc+kDx/54zBkT5Kw9VwxeUO/pl4DraSb vFKAq1vXZy5XSE1c4j78RryXQaLmkMkOLfUeLUGHwibGWa/bTYpPf9b0ZtO174wL aQV7D6qDKyqY5ZjQfMXbKvyipC8h0qMyPskEO9dvl2HoD2Ox9429kHMqE0aO1P8I dgM1KNPXRUtbriwsaHca1Vep2ZjV34KyzI/7fMRd3lHMifBpyugFt/45roW3SkX8 Imr17wxEYpaAtawh/zD5gxK/XkNkzF3zaTuV23IQWOyrWE4XfYNacJbdLdaOX2Mp HOm14Yn8qpyUbS8FALPHA3K62ThFs6ZGkMDPaRAFJzVPCMWsXyn6whq9VfeAL60I VUJxJbrgpylvalsFlSybgz9qvu6QOyGwykOrXtlokEy10kkcfEtauxH0gPFBq1Kc pJhDXJ2QKm4WNPGymE1sevXiKeCTGovKr6VyuTCUI2ndTZJl1PsnIgxtvV7tWSxw 2pv3j+AW/fZLnCgines7nhV94stV6EEmgk9tR9naR/4bvCe3Fis= =IJPv -----END PGP SIGNATURE-----