Severe RCE Flaw Disclosed in Popular LibreOffice and OpenOffice Software


It’s 2019, and just opening an innocent looking office document file on your system can still allow hackers to compromise your computer.

No, I’m not talking about yet another vulnerability in Microsoft Office, but in two other most popular alternatives—LibreOffice and Apache OpenOffice—free, open source office software used by millions of Windows, MacOS and Linux users.

Security researcher Alex Inführ has discovered a severe remote code execution (RCE) vulnerability in these two open source office suites that could be triggered just by opening a maliciously-crafted ODT (OpenDocument Text) file.

