cve/2024/CVE-2024-12425.md
2025-09-29 16:08:36 +00:00

951 B

CVE-2024-12425

Description

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in The Document Foundation LibreOffice allows Absolute Path Traversal.An attacker can write to arbitrary locations, albeit suffixed with ".ttf", by supplying a file in a format that supports embedded font files.This issue affects LibreOffice: from 24.8 before < 24.8.4.

POC

Reference

No PoCs from references.

Github