Presentations may contain references to images, which are user-controlled, and could include malicious script code that is being processed when editing a document. Script code embedded in malicious documents could be executed in the context of the user editing the document when performing certain actions, like copying content. The relevant attribute does now get encoded to avoid the possibility of executing script code. No publicly available exploits are known.
Metrics
Affected Vendors & Products
References
History
Tue, 03 Dec 2024 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
MITRE
Status: PUBLISHED
Assigner: OX
Published: 2023-11-02T13:01:28.171Z
Updated: 2024-12-03T14:33:59.243Z
Reserved: 2023-03-30T09:34:25.188Z
Link: CVE-2023-29043
Vulnrichment
Updated: 2024-08-02T14:00:15.511Z
NVD
Status : Modified
Published: 2023-11-02T14:15:11.017
Modified: 2024-11-21T07:56:26.147
Link: CVE-2023-29043
Redhat
No data.