CVE-2026-41034

ONLYOFFICE DocumentServer before 9.3.0 has an untrusted pointer dereference in XLS processing/conversion (via pictFmla.cbBufInCtlStm and other vectors), leading to an information leak and ASLR bypass.
Configurations

No configuration.

History

No history.

Information

Published : 2026-04-16 07:16

Updated : 2026-06-17 10:46


NVD link : CVE-2026-41034

Mitre link : CVE-2026-41034

CVE.ORG link : CVE-2026-41034


JSON object : View

Products Affected

No product.

CWE
CWE-125

Out-of-bounds Read