Catdoc v0.95 was discovered to contain a NULL pointer dereference via the component xls2csv at src/fileutil.c.
The product dereferences a pointer that it expects to be valid but is NULL.
Link | Tags |
---|---|
https://rycbar77.github.io/2023/08/29/catdoc-0-95-nullptr-dereference/ | broken link |
https://gist.github.com/rycbar77/3da455382f88cfb6d6798572f34378bd | third party advisory |