Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2023-38856

Опубликовано: 15 авг. 2023
Источник: redhat
CVSS3: 0

Описание

Buffer Overflow vulnerability in libxlsv.1.6.2 allows a remote attacker to execute arbitrary code and cause a denial of service via a crafted XLS file to the get_string function in xlstool.c:411.

Отчет

This flaw was found to be a duplicate of CVE-2023-38852. Please see https://access.redhat.com/security/cve/CVE-2023-38852 for information about affected products and security errata.

Дополнительная информация

Дефект:
CWE-125
https://bugzilla.redhat.com/show_bug.cgi?id=2236664libxls: heap buffer overflow in xls_parseWorkBook() in xls.c

0 Low

CVSS3

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 3 лет назад

Buffer Overflow vulnerability in libxlsv.1.6.2 allows a remote attacker to execute arbitrary code and cause a denial of service via a crafted XLS file to the get_string function in xlstool.c:411.

CVSS3: 6.5
nvd
около 3 лет назад

Buffer Overflow vulnerability in libxlsv.1.6.2 allows a remote attacker to execute arbitrary code and cause a denial of service via a crafted XLS file to the get_string function in xlstool.c:411.

CVSS3: 6.5
debian
около 3 лет назад

Buffer Overflow vulnerability in libxlsv.1.6.2 allows a remote attacke ...

CVSS3: 6.5
github
около 3 лет назад

Buffer Overflow vulnerability in libxlsv.1.6.2 allows a remote attacker to execute arbitrary code and cause a denial of service via a crafted XLS file to the get_string function in xlstool.c:411.

0 Low

CVSS3