Medium severity6.5NVD Advisory· Published Nov 3, 2021· Updated Jun 17, 2026
CVE-2021-27836
CVE-2021-27836
Description
An issue was discoverered in in function xls_getWorkSheet in xls.c in libxls 1.6.2, allows attackers to cause a denial of service, via a crafted XLS file.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
8cpe:2.3:o:fedoraproject:fedora:33:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:o:fedoraproject:fedora:33:*:*:*:*:*:*:*
- cpe:2.3:o:fedoraproject:fedora:34:*:*:*:*:*:*:*
- cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:*
- libxls/libxlsdescription
- osv-coords2 versionspkg:rpm/opensuse/libxls&distro=openSUSE%20Leap%2015.3pkg:rpm/suse/libxls&distro=SUSE%20Package%20Hub%2015%20SP3
< 1.6.2-bp153.2.6.1+ 1 more
- (no CPE)range: < 1.6.2-bp153.2.6.1
- (no CPE)range: < 1.6.2-bp153.2.6.1
Patches
Vulnerability mechanics
References
4- github.com/libxls/libxls/issues/94nvdPatchThird Party Advisory
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/5D7XXCVFYRRMI4ENXYSD3MZEBS6SMI7E/nvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SFOE4Z6T46LA47VXWUVET4ELXRZQ3BWB/nvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/Y6XOTFEOCHYKZAFCB6H3KNIIFJ3UFV7V/nvd
News mentions
0No linked articles in our index yet.