1
Candidate: CVE-2013-6836
4
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-6836
5
https://projects.gnome.org/gnumeric/announcements/1.12/gnumeric-1.12.9.shtml
6
https://git.gnome.org/browse/gnumeric/commit/?id=b5480b69345b3c6d56ee0ed9c9e9880bb2a08cdc
7
https://bugzilla.gnome.org/show_bug.cgi?id=712772
9
Heap-based buffer overflow in the ms_escher_get_data function in
10
plugins/excel/ms-escher.c in GNOME Office Gnumeric before 1.12.9 allows
11
remote attackers to cause a denial of service (crash) via a crafted xls
12
file with a crafted length value.
21
upstream_gnumeric: released (1.12.9)
22
lucid_gnumeric: ignored (reached end-of-life)
23
precise_gnumeric: ignored (reached end-of-life)
24
precise/esm_gnumeric: DNE (precise was needs-triage)
25
quantal_gnumeric: ignored (reached end-of-life)
26
raring_gnumeric: ignored (reached end-of-life)
27
saucy_gnumeric: ignored (reached end-of-life)
28
trusty_gnumeric: not-affected (1.12.9-1)
29
utopic_gnumeric: not-affected (1.12.9-1)
30
vivid_gnumeric: not-affected (1.12.9-1)
31
vivid/stable-phone-overlay_gnumeric: DNE
32
vivid/ubuntu-core_gnumeric: DNE
33
wily_gnumeric: not-affected (1.12.9-1)
34
xenial_gnumeric: not-affected (1.12.9-1)
35
yakkety_gnumeric: not-affected (1.12.9-1)
36
zesty_gnumeric: not-affected (1.12.9-1)
37
devel_gnumeric: not-affected (1.12.9-1)