Show filters
18 Total Results
Displaying 1-10 of 18
Sort by:
Attacker Value
Unknown
CVE-2023-38856
Disclosure Date: August 15, 2023 (last updated October 08, 2023)
Buffer Overflow vulnerability in libxlsv.1.6.2 allows a remote attacker to execute arbitrary code and cause a denial of service via a crafted XLS file to the get_string function in xlstool.c:411.
0
Attacker Value
Unknown
CVE-2023-38855
Disclosure Date: August 15, 2023 (last updated October 08, 2023)
Buffer Overflow vulnerability in libxlsv.1.6.2 allows a remote attacker to execute arbitrary code and cause a denial of service via a crafted XLS file to the get_string function in xlstool.c:395.
0
Attacker Value
Unknown
CVE-2023-38854
Disclosure Date: August 15, 2023 (last updated October 08, 2023)
Buffer Overflow vulnerability in libxlsv.1.6.2 allows a remote attacker to execute arbitrary code and cause a denial of service via a crafted XLS file to the transcode_latin1_to_utf8 function in xlstool.c:296.
0
Attacker Value
Unknown
CVE-2023-38853
Disclosure Date: August 15, 2023 (last updated October 08, 2023)
Buffer Overflow vulnerability in libxlsv.1.6.2 allows a remote attacker to execute arbitrary code and cause a denial of service via a crafted XLS file to the xls_parseWorkBook function in xls.c:1015.
0
Attacker Value
Unknown
CVE-2023-38852
Disclosure Date: August 15, 2023 (last updated October 08, 2023)
Buffer Overflow vulnerability in libxlsv.1.6.2 allows a remote attacker to execute arbitrary code and cause a denial of service via a crafted XLS file to the unicode_decode_wcstombs function in xlstool.c:266.
0
Attacker Value
Unknown
CVE-2023-38851
Disclosure Date: August 15, 2023 (last updated October 08, 2023)
Buffer Overflow vulnerability in libxlsv.1.6.2 allows a remote attacker to execute arbitrary code and cause a denial of service via a crafted XLS file to the xls_parseWorkBook function in xls.c:1018.
0
Attacker Value
Unknown
CVE-2021-27836
Disclosure Date: November 03, 2021 (last updated February 23, 2025)
An issue was discoverered in in function xls_getWorkSheet in xls.c in libxls 1.6.2, allows attackers to cause a denial of service, via a crafted XLS file.
0
Attacker Value
Unknown
CVE-2020-27819
Disclosure Date: February 23, 2021 (last updated February 22, 2025)
An issue was discovered in libxls before and including 1.6.1 when reading Microsoft Excel files. A NULL pointer dereference vulnerability exists when parsing XLS cells in libxls/xls2csv.c:199. It could allow a remote attacker to cause a denial of service via crafted XLS file.
0
Attacker Value
Unknown
CVE-2017-2910
Disclosure Date: December 02, 2020 (last updated February 22, 2025)
An exploitable Out-of-bounds Write vulnerability exists in the xls_addCell function of libxls 2.0. A specially crafted xls file can cause a memory corruption resulting in remote code execution. An attacker can send malicious xls file to trigger this vulnerability.
0
Attacker Value
Unknown
CVE-2018-20450
Disclosure Date: December 25, 2018 (last updated November 27, 2024)
The read_MSAT function in ole.c in libxls 1.4.0 has a double free that allows attackers to cause a denial of service (application crash) via a crafted file, a different vulnerability than CVE-2017-2897.
0