Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
ytnef project ytnef vulnerabilities and exploits
(subscribe to this query)
5.5
CVSSv3
CVE-2017-9471
In ytnef 1.9.2, the SwapWord function in lib/ytnef.c allows remote malicious users to cause a denial of service (heap-based buffer over-read and application crash) via a crafted file.
Ytnef Project Ytnef 1.9.2
Canonical Ubuntu Linux 14.04
5.5
CVSSv3
CVE-2017-9474
In ytnef 1.9.2, the DecompressRTF function in lib/ytnef.c allows remote malicious users to cause a denial of service (heap-based buffer over-read and application crash) via a crafted file.
Ytnef Project Ytnef 1.9.2
8.8
CVSSv3
CVE-2017-9146
The TNEFFillMapi function in lib/ytnef.c in libytnef in ytnef up to and including 1.9.2 does not ensure a nonzero count value before a certain memory allocation, which allows remote malicious users to cause a denial of service (heap-based buffer overflow and application crash) or...
Ytnef Project Ytnef
9.8
CVSSv3
CVE-2017-9058
In libytnef in ytnef up to and including 1.9.2, there is a heap-based buffer over-read due to incorrect boundary checking in the SIZECHECK macro in lib/ytnef.c.
Ytnef Project Ytnef
Canonical Ubuntu Linux 14.04
7.5
CVSSv3
CVE-2017-6801
An issue exists in ytnef prior to 1.9.2. There is a potential out-of-bounds access with fields of Size 0 in TNEFParse() in libytnef.
Ytnef Project Ytnef
Debian Debian Linux 8.0
Debian Debian Linux 9.0
7.5
CVSSv3
CVE-2017-6802
An issue exists in ytnef prior to 1.9.2. There is a potential heap-based buffer over-read on incoming Compressed RTF Streams, related to DecompressRTF() in libytnef.
Ytnef Project Ytnef
Debian Debian Linux 8.0
Debian Debian Linux 9.0
7.5
CVSSv3
CVE-2017-6800
An issue exists in ytnef prior to 1.9.2. An invalid memory access (heap-based buffer over-read) can occur during handling of LONG data types, related to MAPIPrint() in libytnef.
Ytnef Project Ytnef
Debian Debian Linux 8.0
Debian Debian Linux 9.0
7.8
CVSSv3
CVE-2017-6298
An issue exists in ytnef prior to 1.9.1. This is related to a patch described as "1 of 9. Null Pointer Deref / calloc return value not checked."
Ytnef Project Ytnef
Debian Debian Linux 8.0
Debian Debian Linux 9.0
7.8
CVSSv3
CVE-2017-6300
An issue exists in ytnef prior to 1.9.1. This is related to a patch described as "3 of 9. Buffer Overflow in version field in lib/tnef-types.h."
Ytnef Project Ytnef
Debian Debian Linux 8.0
Debian Debian Linux 9.0
7.8
CVSSv3
CVE-2017-6302
An issue exists in ytnef prior to 1.9.1. This is related to a patch described as "5 of 9. Integer Overflow."
Ytnef Project Ytnef
Debian Debian Linux 8.0
Debian Debian Linux 9.0
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
hard-coded
CVE-2024-27202
NULL pointer dereference
CVE-2024-28075
CVE-2024-33608
CVE-2024-28889
CVE-2024-34572
template injection
CVE-2024-34351
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
NEXT »