Deepin Linux's default document reader deepin-reader software suffers from a serious vulnerability in versions prior to 6.0.7 due to a design flaw that leads to remote command execution via crafted docx document. This is a file overwrite vulnerability. Remote code execution (RCE) can be achieved by overwriting files like .bashrc, .bashlogin, etc. RCE will be triggered when the user opens the terminal. Version 6.0.7 contains a patch for the issue.
{
"cwe_ids": [
"CWE-22",
"CWE-27"
],
"cna_assigner": "GitHub_M",
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/50xxx/CVE-2023-50254.json"
}{
"cpe": "cpe:2.3:a:deepin:deepin_reader:*:*:*:*:*:*:*:*",
"extracted_events": [
{
"introduced": "0"
},
{
"fixed": "6.0.7"
}
],
"source": [
"CPE_RANGE",
"REFERENCES"
]
}"2026-07-22T02:50:30Z"
[
{
"signature_type": "Function",
"deprecated": false,
"digest": {
"length": 3525.0,
"function_hash": "99317559168911753024236711830360943558"
},
"signature_version": "v1",
"source": "https://github.com/linuxdeepin/deepin-reader/commit/c192fd20a2fe4003e0581c3164489a89e06420c6",
"id": "CVE-2023-50254-5ead2631",
"target": {
"function": "deepin_reader::DocumentFactory::getDocument",
"file": "reader/document/Model.cpp"
}
},
{
"signature_type": "Line",
"deprecated": false,
"digest": {
"threshold": 0.9,
"line_hashes": [
"287840479860719583676183803150162161715",
"72689623459492493975925408026019395309",
"232062186733139139157562312148349130886",
"108420111361074691328382336576807282303",
"20643342268245469805940553861084832796",
"246458985290276239000282885118726929908",
"166794536315872318796661357858088900851"
]
},
"signature_version": "v1",
"source": "https://github.com/linuxdeepin/deepin-reader/commit/c192fd20a2fe4003e0581c3164489a89e06420c6",
"id": "CVE-2023-50254-f41c68de",
"target": {
"file": "reader/document/Model.cpp"
}
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-50254.json"