Presentations may contain references to images, which are user-controlled, and could include malicious script code that is being processed when editing a document. Script code embedded in malicious documents could be executed in the context of the user editing the document when performing certain actions, like copying content. The relevant attribute does now get encoded to avoid the possibility of executing script code. No publicly available exploits are known.
History

Tue, 03 Dec 2024 15:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: OX

Published: 2023-11-02T13:01:28.171Z

Updated: 2024-12-03T14:33:59.243Z

Reserved: 2023-03-30T09:34:25.188Z

Link: CVE-2023-29043

cve-icon Vulnrichment

Updated: 2024-08-02T14:00:15.511Z

cve-icon NVD

Status : Modified

Published: 2023-11-02T14:15:11.017

Modified: 2024-11-21T07:56:26.147

Link: CVE-2023-29043

cve-icon Redhat

No data.