CVE Vulnerabilities

CVE-2008-0668

Published: Feb 11, 2008 | Modified: Mar 08, 2011
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

The excel_read_HLINK function in plugins/excel/ms-excel-read.c in Gnome Office Gnumeric before 1.8.1 allows user-assisted remote attackers to execute arbitrary code via a crafted XLS file containing XLS HLINK opcodes, possibly because of an integer signedness error that leads to an integer overflow. NOTE: some of these details are obtained from third party information.

Affected Software

Name Vendor Start Version End Version
Fedora Redhat 7 (including) 7 (including)
Fedora Redhat 8 (including) 8 (including)
Gnumeric Ubuntu dapper *
Gnumeric Ubuntu edgy *
Gnumeric Ubuntu feisty *
Gnumeric Ubuntu gutsy *

References