VYPR
Medium severity6.5NVD Advisory· Published Aug 15, 2023· Updated Jun 17, 2026

CVE-2023-38854

CVE-2023-38854

Description

Buffer Overflow vulnerability in libxlsv.1.6.2 allows a remote attacker to execute arbitrary code and cause a denial of service via a crafted XLS file to the transcode_latin1_to_utf8 function in xlstool.c:296.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Libxls/Libxls2 versions
    cpe:2.3:a:libxls_project:libxls:1.6.2:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:libxls_project:libxls:1.6.2:*:*:*:*:*:*:*
    • (no CPE)range: <1.6.20
  • libxlsv/libxlsvdescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.