Bugzilla – Bug 1214309
VUL-0: CVE-2023-38852: libxls: buffer overflow via a crafted XLS file to the unicode_decode_wcstombs function in xlstool.c:266
Last modified: 2023-08-16 07:15:02 UTC
CVE-2023-38852 Buffer Overflow vulnerability in libxlsv.1.6.2 allows a remote attacker to execute arbitrary code and cause a denial of service via a crafted XLS file to the unicode_decode_wcstombs function in xlstool.c:266. References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2023-38852 https://www.cve.org/CVERecord?id=CVE-2023-38852 https://github.com/libxls/libxls/issues/124