Buffer overflow in the book_format_sql function in format.c for xlreader 0.9.0 allows remote attackers to execute arbitrary code via a crafted Excel (XLS) file.
Affected Software
| Name | Vendor | Start Version | End Version |
|---|
| Xlreader | Xlreader | 0.9 (including) | 0.9 (including) |
References