Security Advisory

CVE-2024-54028

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-06-02 15:00:15
Last updated 2025-11-03 19:32:04
Assigner talos
CVSS score 8.4
State PUBLISHED

Description

An integer underflow vulnerability exists in the OLE Document DIFAT Parser functionality of catdoc 0.95. A specially crafted malformed file can lead to heap-based memory corruption. An attacker can provide a malicious file to trigger this vulnerability.