CVE-2024-23525
Summary
| CVE | CVE-2024-23525 |
| State | PUBLISHED |
| Assigner | Unknown |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2024-01-18 00:15:00 UTC |
| Updated | 2024-01-27 22:15:00 UTC |
| Description | Description unavailable. |
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|
| Application |
Tozt |
Spreadsheet |
\ |
parsexlsx |
All |
All |
References
| Reference | Source | Link | Tags |
|---|
| metacpan.org/release/NUDDLEGG/Spreadsheet-ParseXLSX-0.30/changes |
|
metacpan.org |
Release Notes |
| github.com/MichaelDaum/spreadsheet-parsexlsx/issues/10 |
|
github.com |
Issue Tracking |
| [debian-lts-announce] 20240127 [SECURITY] [DLA 3723-1] libspreadsheet-parsexlsx-perl security update |
|
lists.debian.org |
|
| [oss-security] 20240118 CVE-2024-23525: Spreadsheet::ParseXLSX for Perl is vulnerable to XXE attacks |
|
www.openwall.com |
Exploit, Mailing List, Third Party Advisory |
| gist.github.com/phvietan/d1c95a88ab6e17047b0248d6bf9eac4a |
|
gist.github.com |
Exploit, Third Party Advisory |
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 6000451 Debian Security Update for libspreadsheet-parsexlsx-perl (DLA 3723-1)