Synopsis
The remote TencentOS Server 3 host is missing one or more security updates.
Description
The version of Tencent Linux installed on the remote TencentOS Server 3 host is prior to tested version. It is, therefore, affected by multiple vulnerabilities as referenced in the TSSA-2023:0006 advisory.
    Package updates are available for TencentOS Server 3 that fix the following vulnerabilities:
      CVE-2022-26305:
      An Improper Certificate Validation vulnerability in LibreOffice existed where determining if a macro was     signed by a trusted author was done by only matching the serial number and issuer string of the used     certificate with that of a trusted certificate. This is not sufficient to verify that the macro was     actually signed with the certificate. An adversary could therefore create an arbitrary certificate with a     serial number and an issuer string identical to a trusted certificate which LibreOffice would present as     belonging to the trusted author, potentially leading to the user to execute arbitrary code contained in     macros improperly trusted. This issue affects: The Document Foundation LibreOffice 7.2 versions prior to     7.2.7; 7.3 versions prior to 7.3.1.
      CVE-2022-26307:
      Apache OpenOffice supports the storage of passwords for web connections in the user's configuration     database. The stored passwords are encrypted with a single master key provided by the user. A flaw in     OpenOffice existed where master key was poorly encoded resulting in weakening its entropy from 128 to 43     bits making the stored passwords vulnerable to a brute force attack if an attacker has access to the users     stored config. This issue affects: Apache OpenOffice versions prior to 4.1.13. Reference: CVE-2022-26307 -     LibreOffice
      CVE-2022-26306:
      Apache OpenOffice supports the storage of passwords for web connections in the user's configuration     database. The stored passwords are encrypted with a single master key provided by the user. A flaw in     OpenOffice existed where the required initialization vector for encryption was always the same which     weakens the security of the encryption making them vulnerable if an attacker has access to the user's     configuration data. This issue affects: Apache OpenOffice versions prior to 4.1.13. Reference:
    CVE-2022-26306 - LibreOffice
      CVE-2022-3140:
      LibreOffice supports Office URI Schemes to enable browser integration of LibreOffice with MS SharePoint     server. An additional scheme 'vnd.libreoffice.command' specific to LibreOffice was added. In the affected     versions of LibreOffice links using that scheme could be constructed to call internal macros with     arbitrary arguments. Which when clicked on, or activated by document events, could result in arbitrary     script execution without warning. This issue affects: The Document Foundation LibreOffice 7.4 versions     prior to 7.4.1; 7.3 versions prior to 7.3.6.
Tenable has extracted the preceding description block directly from the Tencent Linux security advisory.
Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.
Solution
Update the affected packages.
Plugin Details
File Name: tencentos_TSSA_2023_0006.nasl
Supported Sensors: Nessus
Vulnerability Information
CPE: cpe:/o:tencent:tencentos_server:3, p-cpe:/a:tencent:tencentos_server:libreoffice
Required KB Items: Host/local_checks_enabled, Host/cpu, Host/etc/os-release, Host/TencentOS/rpm-list
Exploit Ease: No known exploits are available
Patch Publication Date: 1/18/2023
Vulnerability Publication Date: 1/18/2023