CVE-2013-6836
Publication date 19 December 2013
Last updated 24 July 2024
Ubuntu priority
Description
Heap-based buffer overflow in the ms_escher_get_data function in plugins/excel/ms-escher.c in GNOME Office Gnumeric before 1.12.9 allows remote attackers to cause a denial of service (crash) via a crafted xls file with a crafted length value.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| gnumeric | ||
| 16.04 LTS xenial |
Not affected
|
|
| 14.04 LTS trusty | Not in release | |