When processing a record type of 0x3c from a Workbook stream from an Excel file (.xls), JustSystems Ichitaro Office trusts that the size is greater than zero, subtracts one from the length, and uses this result as the size for a memcpy. This results in a heap-based buffer overflow and can lead to code execution under the context of the application.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: talos
Published: 2017-02-24T22:00:00
Updated: 2024-08-05T14:02:07.698Z
Reserved: 2016-12-01T00:00:00
Link: CVE-2017-2790
Vulnrichment
No data.
NVD
Status : Modified
Published: 2017-02-24T22:59:00.200
Modified: 2024-11-21T03:24:09.513
Link: CVE-2017-2790
Redhat
No data.