CVE-2008-0668
published 2008-02-11CVE-2008-0668: The excel_read_HLINK function in plugins/excel/ms-excel-read.c in Gnome Office Gnumeric before 1.8.1 allows user-assisted remote attackers to execute arbitrary…
PriorityP338critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
4.98%
91.3th percentile
The excel_read_HLINK function in plugins/excel/ms-excel-read.c in Gnome Office Gnumeric before 1.8.1 allows user-assisted remote attackers to execute arbitrary code via a crafted XLS file containing XLS HLINK opcodes, possibly because of an integer signedness error that leads to an integer overflow. NOTE: some of these details are obtained from third party information.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | gnumeric | < gnumeric 1.8.1-1 (bookworm) | gnumeric 1.8.1-1 (bookworm) |
| gnome | gnumeric | <= 1.7.91 | — |
| gnome | gnumeric | >= 0 < 1.8.1-1 | 1.8.1-1 |
| gnome | gnumeric | >= 0 < 1.8.1-1 | 1.8.1-1 |
| gnome | gnumeric | >= 0 < 1.8.1-1 | 1.8.1-1 |
| gnome | gnumeric | >= 0 < 1.8.1-1 | 1.8.1-1 |
CVSS provenance
nvdv2.09.3CRITICALAV:N/AC:M/Au:N/C:C/I:C/A:C
osv9.3CRITICAL
vendor_debian9.3MEDIUM
vendor_redhat9.3CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Gnumeric vulnerability
vendor_ubuntu·2008-04-22
CVE-2008-0668 Gnumeric vulnerability
Title: Gnumeric vulnerability
Summary: Gnumeric vulnerability
Thilo Pfennig and Morten Welinder discovered that the XLS spreadsheet
handling code in Gnumeric did not correctly calculate needed memory sizes.
If a user or automated system were tricked into loading a specially crafted
XLS document, a remote attacker could execute arbitrary code with user
privileges.
Instructions: After a standard system upgrade you need to restart gnumeric to effect
the necessary changes.
Debian
CVE-2008-0668: gnumeric - The excel_read_HLINK function in plugins/excel/ms-excel-read.c in Gnome Office G...
vendor_debian·2008·CVSS 9.3
CVE-2008-0668 [CRITICAL] CVE-2008-0668: gnumeric - The excel_read_HLINK function in plugins/excel/ms-excel-read.c in Gnome Office G...
The excel_read_HLINK function in plugins/excel/ms-excel-read.c in Gnome Office Gnumeric before 1.8.1 allows user-assisted remote attackers to execute arbitrary code via a crafted XLS file containing XLS HLINK opcodes, possibly because of an integer signedness error that leads to an integer overflow. NOTE: some of these details are obtained from third party information.
Scope: local
bookworm: resolved (fixed in 1.8.1-1)
bullseye: resolved (fixed in 1.8.1-1)
forky: resolved (fixed in 1.8.1-1)
sid: resolved (fixed in 1.8.1-1)
trixie: resolved (fixed in 1.8.1-1)
Red Hat
gnumeric: integer overflow and signedness errors in XLS processing
vendor_redhat·2007-12-24·CVSS 9.3
CVE-2008-0668 [CRITICAL] CWE-190 gnumeric: integer overflow and signedness errors in XLS processing
gnumeric: integer overflow and signedness errors in XLS processing
The excel_read_HLINK function in plugins/excel/ms-excel-read.c in Gnome Office Gnumeric before 1.8.1 allows user-assisted remote attackers to execute arbitrary code via a crafted XLS file containing XLS HLINK opcodes, possibly because of an integer signedness error that leads to an integer overflow. NOTE: some of these details are obtained from third party information.
GHSA
GHSA-ff87-x3fm-p744: The excel_read_HLINK function in plugins/excel/ms-excel-read
ghsa_unreviewed·2022-05-01
CVE-2008-0668 [HIGH] GHSA-ff87-x3fm-p744: The excel_read_HLINK function in plugins/excel/ms-excel-read
The excel_read_HLINK function in plugins/excel/ms-excel-read.c in Gnome Office Gnumeric before 1.8.1 allows user-assisted remote attackers to execute arbitrary code via a crafted XLS file containing XLS HLINK opcodes, possibly because of an integer signedness error that leads to an integer overflow. NOTE: some of these details are obtained from third party information.
OSV
CVE-2008-0668: The excel_read_HLINK function in plugins/excel/ms-excel-read
osv·2008-02-11·CVSS 9.3
CVE-2008-0668 [CRITICAL] CVE-2008-0668: The excel_read_HLINK function in plugins/excel/ms-excel-read
The excel_read_HLINK function in plugins/excel/ms-excel-read.c in Gnome Office Gnumeric before 1.8.1 allows user-assisted remote attackers to execute arbitrary code via a crafted XLS file containing XLS HLINK opcodes, possibly because of an integer signedness error that leads to an integer overflow. NOTE: some of these details are obtained from third party information.
No detection rules found.
No public exploits indexed.
http://bugs.gentoo.org/show_bug.cgi?id=208356http://bugzilla.gnome.org/show_bug.cgi?id=505330http://lists.opensuse.org/opensuse-security-announce/2008-08/msg00001.htmlhttp://secunia.com/advisories/28725/http://secunia.com/advisories/28799http://secunia.com/advisories/28948http://secunia.com/advisories/29702http://secunia.com/advisories/29896http://secunia.com/advisories/31339http://security.gentoo.org/glsa/glsa-200802-05.xmlhttp://www.debian.org/security/2008/dsa-1546http://www.gnome.org/projects/gnumeric/announcements/1.8/gnumeric-1.8.1.shtmlhttp://www.mandriva.com/security/advisories?name=MDVSA-2008:056http://www.securityfocus.com/bid/27536http://www.ubuntu.com/usn/usn-604-1http://www.vupen.com/english/advisories/2008/0462https://www.redhat.com/archives/fedora-package-announce/2008-February/msg00114.htmlhttps://www.redhat.com/archives/fedora-package-announce/2008-February/msg00227.htmlhttp://bugs.gentoo.org/show_bug.cgi?id=208356http://bugzilla.gnome.org/show_bug.cgi?id=505330http://lists.opensuse.org/opensuse-security-announce/2008-08/msg00001.htmlhttp://secunia.com/advisories/28725/http://secunia.com/advisories/28799http://secunia.com/advisories/28948http://secunia.com/advisories/29702http://secunia.com/advisories/29896http://secunia.com/advisories/31339http://security.gentoo.org/glsa/glsa-200802-05.xmlhttp://www.debian.org/security/2008/dsa-1546http://www.gnome.org/projects/gnumeric/announcements/1.8/gnumeric-1.8.1.shtmlhttp://www.mandriva.com/security/advisories?name=MDVSA-2008:056http://www.securityfocus.com/bid/27536http://www.ubuntu.com/usn/usn-604-1http://www.vupen.com/english/advisories/2008/0462https://www.redhat.com/archives/fedora-package-announce/2008-February/msg00114.htmlhttps://www.redhat.com/archives/fedora-package-announce/2008-February/msg00227.html
2008-02-11
Published