GNOME Bugzilla – Bug 703215
Segfault in xlsx_axis_crosses on a corrupted (fuzzed) xlsx file
Last modified: 2013-06-27 20:30:51 UTC
Segfault in xlsx_axis_crosses on a corrupted (fuzzed) xlsx file. Git versions of glib, goffice, gnumeric, libgsf and libxml2. Test case: http://jutaky.com/fuzzing/gnumeric_case_25139_25453.xlsx Program received signal SIGSEGV, Segmentation fault. 0x00007fffe6b3a501 in xlsx_axis_crosses (xin=0x7fffffffceb0, attrs=0x109fd10) at xlsx-read-drawing.c:602 602 state->axis.info->cross_value = 0.; (gdb) bt
+ Trace 232156
-- Juha Kylmänen Research Assistant, OUSPG
This problem has been fixed in the development version. The fix will be available in the next major software release. Thank you for your bug report.