An issue was discovered in libxls before and including 1.6.1 when reading Microsoft Excel files. A NULL pointer dereference vulnerability exists when parsing XLS cells in libxls/xls2csv.c:199. It could allow a remote attacker to cause a denial of service via crafted XLS file.
A NULL pointer dereference occurs when the application dereferences a pointer that it expects to be valid, but is NULL, typically causing a crash or exit.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Libxls | Libxls_project | * | 1.6.2 (excluding) |
R-cran-readxl | Ubuntu | bionic | * |
R-cran-readxl | Ubuntu | groovy | * |
R-cran-readxl | Ubuntu | hirsute | * |
R-cran-readxl | Ubuntu | impish | * |
R-cran-readxl | Ubuntu | kinetic | * |
R-cran-readxl | Ubuntu | lunar | * |
R-cran-readxl | Ubuntu | mantic | * |
R-cran-readxl | Ubuntu | trusty | * |
R-cran-readxl | Ubuntu | xenial | * |