GNOME Bugzilla – Bug 760230
Crash (SIGABRT) from mathfunc.c on a fuzzed xls file
Last modified: 2016-01-07 00:35:27 UTC
Git versions of gtk, glib, goffice, gnumeric, libgsf and libxml2. Test case: http://jutaky.com/fuzzing/gnumeric_case_012-mathfunc.c.xls $ ssconvert gnumeric_case_012-mathfunc.c.xls /tmp/out.gnumeric Program received signal SIGABRT, Aborted. 0x00007ffff16be5f8 in raise () from /usr/lib/libc.so.6 (gdb) bt
+ Trace 235876
-- Juha Kylmänen
We're getting hit by this: /* FIXME: handle overflow/underflow in division below */
This problem has been fixed in our software repository. The fix will go into the next software release. Once that release is available, you may want to check for a software upgrade provided by your Linux distribution.