Security Advisory

CVE-2024-43106

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-12-18 22:41:11
Last updated 2024-12-19 16:43:40
Assigner talos
State PUBLISHED

Description

A library injection vulnerability exists in Microsoft Excel 16.83 for macOS. A specially crafted library can leverage Excels access privileges, leading to a permission bypass. A malicious application could inject a library and start the program to trigger this vulnerability and then make use of the vulnerable applications permissions.