CVE-2017-2897
published 2017-11-20CVE-2017-2897: An exploitable out-of-bounds write vulnerability exists in the read_MSAT function of libxls 1.4. A specially crafted XLS file can cause a memory corruption…
PriorityP340high7.8CVSS 3.1
AVLACLPRNUIRSUCHIHAH
EPSS
2.06%
79.4th percentile
An exploitable out-of-bounds write vulnerability exists in the read_MSAT function of libxls 1.4. A specially crafted XLS file can cause a memory corruption resulting in remote code execution. An attacker can send malicious XLS file to trigger this vulnerability.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | r-cran-readxl | < r-cran-readxl 1.2.0.9000-1 (bookworm) | r-cran-readxl 1.2.0.9000-1 (bookworm) |
| debian | r-cran-readxl | < r-cran-readxl 1.0.0-2 (bookworm) | r-cran-readxl 1.0.0-2 (bookworm) |
| libxls_project | libxls | — | — |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv3.08.8HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv7.8HIGH
vendor_debian7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Debian
CVE-2018-20450: r-cran-readxl - The read_MSAT function in ole.c in libxls 1.4.0 has a double free that allows at...
vendor_debian·2018·CVSS 7.8
CVE-2018-20450 [HIGH] CVE-2018-20450: r-cran-readxl - The read_MSAT function in ole.c in libxls 1.4.0 has a double free that allows at...
The read_MSAT function in ole.c in libxls 1.4.0 has a double free that allows attackers to cause a denial of service (application crash) via a crafted file, a different vulnerability than CVE-2017-2897.
Scope: local
bookworm: resolved (fixed in 1.2.0.9000-1)
bullseye: resolved (fixed in 1.2.0.9000-1)
forky: resolved (fixed in 1.2.0.9000-1)
sid: resolved (fixed in 1.2.0.9000-1)
trixie: resolved (fixed in 1.2.0.9000-1)
Debian
CVE-2017-2897: r-cran-readxl - An exploitable out-of-bounds write vulnerability exists in the read_MSAT functio...
vendor_debian·2017·CVSS 7.8
CVE-2017-2897 [HIGH] CVE-2017-2897: r-cran-readxl - An exploitable out-of-bounds write vulnerability exists in the read_MSAT functio...
An exploitable out-of-bounds write vulnerability exists in the read_MSAT function of libxls 1.4. A specially crafted XLS file can cause a memory corruption resulting in remote code execution. An attacker can send malicious XLS file to trigger this vulnerability.
Scope: local
bookworm: resolved (fixed in 1.0.0-2)
bullseye: resolved (fixed in 1.0.0-2)
forky: resolved (fixed in 1.0.0-2)
sid: resolved (fixed in 1.0.0-2)
trixie: resolved (fixed in 1.0.0-2)
GHSA
GHSA-r369-mhv6-47fj: The read_MSAT function in ole
ghsa_unreviewed·2022-05-13·CVSS 7.8
CVE-2018-20450 [HIGH] CWE-415 GHSA-r369-mhv6-47fj: The read_MSAT function in ole
The read_MSAT function in ole.c in libxls 1.4.0 has a double free that allows attackers to cause a denial of service (application crash) via a crafted file, a different vulnerability than CVE-2017-2897.
GHSA
GHSA-8p96-2vj8-w389: An exploitable out-of-bounds write vulnerability exists in the read_MSAT function of libxls 1
ghsa_unreviewed·2022-05-13
CVE-2017-2897 [HIGH] CWE-787 GHSA-8p96-2vj8-w389: An exploitable out-of-bounds write vulnerability exists in the read_MSAT function of libxls 1
An exploitable out-of-bounds write vulnerability exists in the read_MSAT function of libxls 1.4. A specially crafted XLS file can cause a memory corruption resulting in remote code execution. An attacker can send malicious XLS file to trigger this vulnerability.
OSV
CVE-2018-20450: The read_MSAT function in ole
osv·2018-12-25·CVSS 7.8
CVE-2018-20450 [HIGH] CVE-2018-20450: The read_MSAT function in ole
The read_MSAT function in ole.c in libxls 1.4.0 has a double free that allows attackers to cause a denial of service (application crash) via a crafted file, a different vulnerability than CVE-2017-2897.
OSV
CVE-2017-2897: An exploitable out-of-bounds write vulnerability exists in the read_MSAT function of libxls 1
osv·2017-11-20·CVSS 7.8
CVE-2017-2897 [HIGH] CVE-2017-2897: An exploitable out-of-bounds write vulnerability exists in the read_MSAT function of libxls 1
An exploitable out-of-bounds write vulnerability exists in the read_MSAT function of libxls 1.4. A specially crafted XLS file can cause a memory corruption resulting in remote code execution. An attacker can send malicious XLS file to trigger this vulnerability.
No detection rules found.
No public exploits indexed.
arXiv
Directed Greybox Fuzzing via Large Language Model
arxiv_fulltext·2025-05-06
Directed Greybox Fuzzing via Large Language Model
Directed Greybox Fuzzing via Large Language Model
Hanxiang Xu
Huazhong University of Science and Technology
China
[email protected]
Yanjie Zhao
Huazhong University of Science and Technology
China
[email protected]
Haoyu Wang
Huazhong University of Science and Technology
China
[email protected]
## Abstract
Directed greybox fuzzing (DGF) focuses on efficiently reaching specific program locations or triggering particular behaviors, making it essential for tasks like vulnerability detection and crash reproduction. However, existing methods often suffer from path explosion and randomness in input mutation, leading to inefficiencies in exploring and exploiting target paths. In this paper, we propose , an automatic framework that leverages the large language model (LLM) to add
Bugzilla
CVE-2017-2897 libxls: out-of-bounds vulnerability in the read_MSAT function which could result in remote code execution
bugzilla·2020-04-29·CVSS 7.8
CVE-2017-2897 [HIGH] CVE-2017-2897 libxls: out-of-bounds vulnerability in the read_MSAT function which could result in remote code execution
CVE-2017-2897 libxls: out-of-bounds vulnerability in the read_MSAT function which could result in remote code execution
An exploitable out-of-bounds write vulnerability exists in the read_MSAT function of libxls 1.4. A specially crafted XLS file can cause a memory corruption resulting in remote code execution. An attacker can send malicious XLS file to trigger this vulnerability.
Discussion:
External References:
https://talosintelligence.com/vulnerability_reports/TALOS-2017-0404
https://security.gentoo.org/glsa/202003-64https://www.debian.org/security/2018/dsa-4173https://www.talosintelligence.com/vulnerability_reports/TALOS-2017-0404https://security.gentoo.org/glsa/202003-64https://www.debian.org/security/2018/dsa-4173https://www.talosintelligence.com/vulnerability_reports/TALOS-2017-0404
2017-11-20
Published