[Git][security-tracker-team/security-tracker][master] Add three new catdoc issues

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon Jun 2 16:52:33 BST 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
53eb0b85 by Salvatore Bonaccorso at 2025-06-02T17:52:15+02:00
Add three new catdoc issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,3 +1,12 @@
+CVE-2024-52035 [OLE Document Parser File Allocation Table 32-bit integer overflow vulnerability]
+	- catdoc <unfixed>
+	NOTE: https://talosintelligence.com/vulnerability_reports/TALOS-2024-2131
+CVE-2024-54028 [OLE Document DIFAT Parser integer underflow vulnerability]
+	- catdoc <unfixed>
+	NOTE: https://talosintelligence.com/vulnerability_reports/TALOS-2024-2132
+CVE-2024-48877 [ls2csv utility Shared String Table Record Parser memory corruption vulnerability]
+	- catdoc <unfixed>
+	NOTE: https://talosintelligence.com/vulnerability_reports/TALOS-2024-2128
 CVE-2025-5436 (A vulnerability was found in Multilaser Sirius RE016 MLT1.0. It has be ...)
 	NOT-FOR-US: Multilaser Sirius RE016
 CVE-2025-5435 (A vulnerability was found in Marwal Infotech CMS 1.0. It has been decl ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/53eb0b850532e5da2d51a8f6569fb5062c4842e3

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/53eb0b850532e5da2d51a8f6569fb5062c4842e3
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250602/906708aa/attachment.htm>


More information about the debian-security-tracker-commits mailing list