{"id":"CVE-2022-48422","details":"ONLYOFFICE Docs through 7.3 on certain Linux distributions allows local users to gain privileges via a Trojan horse libgcc_s.so.1 in the current working directory, which may be any directory in which an ONLYOFFICE document is located.","modified":"2026-04-12T05:04:15.097041Z","published":"2023-03-19T01:15:39.040Z","references":[{"type":"REPORT","url":"https://forum.onlyoffice.com/t/security-hole-library-from-cwd/3302"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/onlyoffice/documentserver","events":[{"introduced":"0"},{"last_affected":"1002e5fb9a39406df7deb971fcc7e5cdf52705cd"}],"database_specific":{"cpe":"cpe:2.3:a:onlyoffice:document_server:*:*:*:*:*:*:*:*","extracted_events":[{"introduced":"0"},{"last_affected":"7.3.0"}],"source":"CPE_FIELD"}}],"versions":["ONLYOFFICE-DocumentServer-3.0.0","ONLYOFFICE-DocumentServer-4.0.0-9","ONLYOFFICE-DocumentServer-4.0.1-34","ONLYOFFICE-DocumentServer-4.0.2-4","ONLYOFFICE-DocumentServer-4.0.3-3","ONLYOFFICE-DocumentServer-4.1.2-37","ONLYOFFICE-DocumentServer-4.1.4-3","ONLYOFFICE-DocumentServer-4.1.5-1","ONLYOFFICE-DocumentServer-4.1.6-3","ONLYOFFICE-DocumentServer-4.1.8-1","ONLYOFFICE-DocumentServer-4.2.0","ONLYOFFICE-DocumentServer-4.2.1","ONLYOFFICE-DocumentServer-4.2.10","ONLYOFFICE-DocumentServer-4.2.11","ONLYOFFICE-DocumentServer-4.2.3","ONLYOFFICE-DocumentServer-4.2.4","ONLYOFFICE-DocumentServer-4.2.5","ONLYOFFICE-DocumentServer-4.2.7","ONLYOFFICE-DocumentServer-4.2.8","ONLYOFFICE-DocumentServer-4.2.9","ONLYOFFICE-DocumentServer-4.3.0","ONLYOFFICE-DocumentServer-4.3.1","ONLYOFFICE-DocumentServer-4.3.2","ONLYOFFICE-DocumentServer-4.3.3","ONLYOFFICE-DocumentServer-4.3.4","ONLYOFFICE-DocumentServer-4.3.5","ONLYOFFICE-DocumentServer-4.3.6","ONLYOFFICE-DocumentServer-4.4.1","ONLYOFFICE-DocumentServer-4.4.2","ONLYOFFICE-DocumentServer-4.4.3","ONLYOFFICE-DocumentServer-5.0.3","ONLYOFFICE-DocumentServer-5.0.4","ONLYOFFICE-DocumentServer-5.0.5","ONLYOFFICE-DocumentServer-5.0.6","ONLYOFFICE-DocumentServer-5.0.7","ONLYOFFICE-DocumentServer-5.1.0","ONLYOFFICE-DocumentServer-5.1.1","ONLYOFFICE-DocumentServer-5.1.2","ONLYOFFICE-DocumentServer-5.1.3","ONLYOFFICE-DocumentServer-5.1.4","ONLYOFFICE-DocumentServer-5.1.5","ONLYOFFICE-DocumentServer-5.2.0","ONLYOFFICE-DocumentServer-5.2.2","ONLYOFFICE-DocumentServer-5.2.3","ONLYOFFICE-DocumentServer-5.2.4","ONLYOFFICE-DocumentServer-5.2.6","ONLYOFFICE-DocumentServer-5.2.7","ONLYOFFICE-DocumentServer-5.2.8","ONLYOFFICE-DocumentServer-5.3.0","ONLYOFFICE-DocumentServer-5.3.1","ONLYOFFICE-DocumentServer-5.3.2","ONLYOFFICE-DocumentServer-5.3.4","ONLYOFFICE-DocumentServer-5.4.0-2","ONLYOFFICE-DocumentServer-5.4.1","ONLYOFFICE-DocumentServer-5.4.2","ONLYOFFICE-DocumentServer-5.5.0","ONLYOFFICE-DocumentServer-5.5.1","ONLYOFFICE-DocumentServer-5.5.3","ONLYOFFICE-DocumentServer-5.6.0","ONLYOFFICE-DocumentServer-5.6.1","ONLYOFFICE-DocumentServer-5.6.2","ONLYOFFICE-DocumentServer-5.6.3","ONLYOFFICE-DocumentServer-5.6.4","ONLYOFFICE-DocumentServer-5.6.5","ONLYOFFICE-DocumentServer-6.0.0","ONLYOFFICE-DocumentServer-6.0.1","ONLYOFFICE-DocumentServer-6.0.2","ONLYOFFICE-Online-Editors-2.5","ONLYOFFICE-Online-Editors-2.5.7","v6.1.0","v6.1.1","v6.2.0","v6.2.1","v6.2.2","v6.3.0","v6.3.1","v6.3.2","v6.4.0","v6.4.1","v6.4.2","v7.0.0","v7.0.1","v7.1.0","v7.1.1","v7.2.0","v7.2.1","v7.2.2","v7.3.0"],"database_specific":{"source":"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-48422.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"}]}