An issue was discoverered in in function xls_getWorkSheet in xls.c in libxls 1.6.2, allows attackers to cause a denial of service, via a crafted XLS file.
References
Link | Resource |
---|---|
https://github.com/libxls/libxls/issues/94 | Patch Third Party Advisory |
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/SFOE4Z6T46LA47VXWUVET4ELXRZQ3BWB/ | Mailing List Third Party Advisory |
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/Y6XOTFEOCHYKZAFCB6H3KNIIFJ3UFV7V/ | Mailing List Third Party Advisory |
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/5D7XXCVFYRRMI4ENXYSD3MZEBS6SMI7E/ | Mailing List Third Party Advisory |
Information
Published : 2021-11-03 10:15
Updated : 2021-11-26 12:01
NVD link : CVE-2021-27836
Mitre link : CVE-2021-27836
JSON object : View
CWE
CWE-476
NULL Pointer Dereference
Products Affected
fedoraproject
- fedora
libxls_project
- libxls