Bugzilla – Bug 1214311
VUL-0: CVE-2023-38854: libxls: buffer overflow via a crafted XLS file to the transcode_latin1_to_utf8 function in xlstool.c:296
Last modified: 2023-08-16 07:15:03 UTC
CVE-2023-38854 Buffer Overflow vulnerability in libxlsv.1.6.2 allows a remote attacker to execute arbitrary code and cause a denial of service via a crafted XLS file to the transcode_latin1_to_utf8 function in xlstool.c:296. References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2023-38854 https://www.cve.org/CVERecord?id=CVE-2023-38854 https://github.com/libxls/libxls/issues/124