Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
gnumeric vulnerabilities and exploits
(subscribe to this query)
4.3
CVSSv2
CVE-2013-6836
Heap-based buffer overflow in the ms_escher_get_data function in plugins/excel/ms-escher.c in GNOME Office Gnumeric prior to 1.12.9 allows remote malicious users to cause a denial of service (crash) via a crafted xls file with a crafted length value.
Gnome Gnumeric
Gnome Gnumeric 1.12.7
Gnome Gnumeric 1.12.0
Gnome Gnumeric 1.12.4
Gnome Gnumeric 1.12.3
Gnome Gnumeric 1.12.6
Gnome Gnumeric 1.12.5
Gnome Gnumeric 1.12.2
Gnome Gnumeric 1.12.1
6.9
CVSSv2
CVE-2009-0318
Untrusted search path vulnerability in the GObject Python interpreter wrapper in Gnumeric allows local users to execute arbitrary code via a Trojan horse Python file in the current working directory, related to a vulnerability in the PySys_SetArgv function (CVE-2008-5983).
Gnome Gnumeric
9.3
CVSSv2
CVE-2008-0668
The excel_read_HLINK function in plugins/excel/ms-excel-read.c in Gnome Office Gnumeric prior to 1.8.1 allows user-assisted remote malicious users to execute arbitrary code via a crafted XLS file containing XLS HLINK opcodes, possibly because of an integer signedness error that l...
Gnome Gnumeric
4.6
CVSSv2
CVE-1999-0719
The Guile plugin for the Gnumeric spreadsheet package allows malicious users to execute arbitrary code.
Gnu Gnumeric 0.27
7.5
CVSSv2
CVE-2005-2491
Integer overflow in pcre_compile.c in Perl Compatible Regular Expressions (PCRE) prior to 6.2, as used in multiple products such as Python, Ethereal, and PHP, allows malicious users to execute arbitrary code via quantifier values in regular expressions, which leads to a heap-base...
Pcre Pcre 5.0
Pcre Pcre 6.0
Pcre Pcre 6.1
6.9
CVSSv2
CVE-2008-5983
Untrusted search path vulnerability in the PySys_SetArgv API function in Python 2.6 and previous versions, and possibly later versions, prepends an empty string to sys.path when the argv[0] argument does not contain a path separator, which might allow local users to execute arbit...
Python Python
Fedoraproject Fedora 13
Canonical Ubuntu Linux 11.04
Canonical Ubuntu Linux 11.10
Canonical Ubuntu Linux 8.04
Canonical Ubuntu Linux 10.04
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
deserialization
CVE-2024-4040
cross-site scripting
CVE-2023-25790
CVE-2024-2961
XML external entity
CVE-2024-26926
CVE-2024-32806
CVE-2024-32711
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started