Summary
The remote host is missing an update to gnumeric
announced via advisory DSA 1546-1.
Solution
https://secure1.securityspace.com/smysecure/catid.html?in=DSA%201546-1
Insight
Thilo Pfennig and Morten Welinder discovered several integer overflow weaknesses in Gnumeric, a GNOME spreadsheet application. These vulnerabilities could result in the execution of arbitrary code through the opening of a maliciously crafted Excel spreadsheet.
For the stable distribution (etch), these problems have been fixed in version 1.6.3-5+etch1.
For the unstable (sid) distribution, these problems were fixed in version 1.8.1-1.
We recommend that you upgrade your gnumeric packages.
Severity
Classification
-
CVE CVE-2008-0668 -
CVSS Base Score: 9.3
AV:N/AC:M/Au:N/C:C/I:C/A:C
Related Vulnerabilities