We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.
Please see our statement on Data Privacy.
An Improper Certificate Validation vulnerability in LibreOffice allowed an attacker to self sign an ODF document, with a signature untrusted by the target, then modify it to change the signature algorithm to an invalid (or unknown to LibreOffice) algorithm and LibreOffice would incorrectly present such a signature with an unknown algorithm as a valid signature issued by a trusted person This issue affects LibreOffice: from 7.0 before 7.0.5, from 7.1 before 7.1.1.
Reserved 2021-01-19 | Published 2025-03-21 | Updated 2025-03-21 | Assigner Document Fdn.CWE-295 Improper Certificate Validation
NDS of Ruhr University Bochum
www.libreoffice.org/...s/security/advisories/cve-2021-25635/
Support options