Back

HIGH

A memory corruption vulnerability exists in the Shared String Table Record Parser implementation in xls2csv utility version 0.95

Published Jun 2, 2025

Description

A memory corruption vulnerability exists in the Shared String Table Record Parser implementation in xls2csv utility version 0.95. A specially crafted malformed file can lead to a heap buffer overflow. An attacker can provide a malicious file to trigger this vulnerability.

Affected products

Remediation

No remediation recorded yet.

References (3)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner talos
Published Jun 2, 2025
Updated Nov 3, 2025
Reserved Dec 11, 2024
CISA Vulnrichment
Updated Jun 2, 2025
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a