CVE-2008-0668
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
The excel_read_HLINK function in plugins/excel/ms-excel-read.c in Gnome Office Gnumeric before 1.8.1 allows user-assisted remote attackers to execute arbitrary code via a crafted XLS file containing XLS HLINK opcodes, possibly because of an integer signedness error that leads to an integer overflow. NOTE: some of these details are obtained from third party information.
La función excel_read_HLINK en plugins/excel/ms-excel-read.c de Gnome Office Gnumeric antes de 1.8.1. Permite a atacantes remotos ayudados por el usuario ejecutar código de su elección a través de un archivo XLS manipulado que contiene opcodes XLS HLINK, posiblemente debido a un desbordamiento de integer. NOTA: algunos de estos detalles se han obtenido de información de terceros.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2008-02-11 CVE Reserved
- 2008-02-11 CVE Published
- 2024-08-07 CVE Updated
- 2024-11-07 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-189: Numeric Errors
CAPEC
References (18)
URL | Tag | Source |
---|---|---|
http://bugs.gentoo.org/show_bug.cgi?id=208356 | X_refsource_confirm | |
http://bugzilla.gnome.org/show_bug.cgi?id=505330 | X_refsource_confirm | |
http://secunia.com/advisories/28948 | Third Party Advisory | |
http://secunia.com/advisories/29702 | Third Party Advisory | |
http://secunia.com/advisories/29896 | Third Party Advisory | |
http://secunia.com/advisories/31339 | Third Party Advisory | |
http://www.securityfocus.com/bid/27536 | Vdb Entry | |
http://www.vupen.com/english/advisories/2008/0462 | Vdb Entry |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://secunia.com/advisories/28799 | 2011-03-08 | |
http://www.gnome.org/projects/gnumeric/announcements/1.8/gnumeric-1.8.1.shtml | 2011-03-08 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Gnome Search vendor "Gnome" | Gnumeric Search vendor "Gnome" for product "Gnumeric" | <= 1.7.91 Search vendor "Gnome" for product "Gnumeric" and version " <= 1.7.91" | - |
Affected
| in | Redhat Search vendor "Redhat" | Fedora Search vendor "Redhat" for product "Fedora" | 7 Search vendor "Redhat" for product "Fedora" and version "7" | - |
Safe
|
Gnome Search vendor "Gnome" | Gnumeric Search vendor "Gnome" for product "Gnumeric" | <= 1.7.91 Search vendor "Gnome" for product "Gnumeric" and version " <= 1.7.91" | - |
Affected
| in | Redhat Search vendor "Redhat" | Fedora Search vendor "Redhat" for product "Fedora" | 8 Search vendor "Redhat" for product "Fedora" and version "8" | - |
Safe
|