漏洞标题
数组索引下流在Calc公式解析中
漏洞描述信息
"Calc公式解析中的数组索引下溢"
CVSS信息
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
漏洞类别
对数组索引的验证不恰当
漏洞标题
Array Index UnderFlow in Calc Formula Parsing
漏洞描述信息
Improper Validation of Array Index vulnerability in the spreadsheet component of The Document Foundation LibreOffice allows an attacker to craft a spreadsheet document that will cause an array index underflow when loaded. In the affected versions of LibreOffice certain malformed spreadsheet formulas, such as AGGREGATE, could be created with less parameters passed to the formula interpreter than it expected, leading to an array index underflow, in which case there is a risk that arbitrary code could be executed. This issue affects: The Document Foundation LibreOffice 7.4 versions prior to 7.4.6; 7.5 versions prior to 7.5.1.
CVSS信息
N/A
漏洞类别
对数组索引的验证不恰当
漏洞标题
LibreOffice 输入验证错误漏洞
漏洞描述信息
LibreOffice是文档基金会(The Document Foundation,tdf)的一套开源的办公软件套件。该产品包含Writer(文本文档)、Calc(电子表格)和Impress(演示文稿)等应用程序。 The Document Foundation LibreOffice 7.4版本至7.4.6之前版本、7.5版本至7.5.1之前版本存在安全漏洞。攻击者利用该漏洞可以制作电子表格文档,该文档会在加载时导致数组索引下溢。
CVSS信息
N/A
漏洞类别
输入验证错误