Document Foundation · Libreoffice · CVE-2026-4430
**Name of the Vulnerable Software and Affected Versions**
LibreOffice versions 26.2 through 26.2.2
LibreOffice versions 25.8 through 25.8.6
**Description**
An out-of-bounds write occurs when processing crafted OOXML documents that contain mismatched encryption salt parameters. An out-of-bounds write is a memory corruption issue where data is written outside the intended boundary of a buffer, potentially leading to crashes or arbitrary code execution.
**Recommendations**
Update LibreOffice versions 26.2 through 26.2.2 to version 26.2.3.
Update LibreOffice versions 25.8 through 25.8.6 to version 25.8.7.