Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
libmspack project libmspack 0.5 vulnerabilities and exploits
(subscribe to this query)
4.3
CVSSv2
CVE-2015-4470
Off-by-one error in the inflate function in mszipd.c in libmspack prior to 0.5 allows remote malicious users to cause a denial of service (buffer over-read and application crash) via a crafted CAB archive.
Libmspack Project Libmspack
4.3
CVSSv2
CVE-2015-4468
Multiple integer overflows in the search_chunk function in chmd.c in libmspack prior to 0.5 allow remote malicious users to cause a denial of service (buffer over-read and application crash) via a crafted CHM file.
Libmspack Project Libmspack
4.3
CVSSv2
CVE-2015-4471
Off-by-one error in the lzxd_decompress function in lzxd.c in libmspack prior to 0.5 allows remote malicious users to cause a denial of service (buffer under-read and application crash) via a crafted CAB archive.
Libmspack Project Libmspack
4.3
CVSSv2
CVE-2014-9732
The cabd_extract function in cabd.c in libmspack prior to 0.5 does not properly maintain decompression callbacks in certain cases where an invalid file follows a valid file, which allows remote malicious users to cause a denial of service (NULL pointer dereference and application...
Libmspack Project Libmspack
4.3
CVSSv2
CVE-2010-2800
The MS-ZIP decompressor in cabextract prior to 1.3 allows remote malicious users to cause a denial of service (infinite loop) via a malformed MSZIP archive in a .cab file during a (1) test or (2) extract action, related to the libmspack library.
Cabextract Project Cabextract
Cabextract Project Cabextract 1.1
Cabextract Project Cabextract 0.4
Cabextract Project Cabextract 0.5
Cabextract Project Cabextract 0.1
Cabextract Project Cabextract 0.3
Cabextract Project Cabextract 0.2
Cabextract Project Cabextract 0.6
Cabextract Project Cabextract 1.0
5.1
CVSSv2
CVE-2010-2801
Integer signedness error in the Quantum decompressor in cabextract prior to 1.3, when archive test mode is used, allows user-assisted remote malicious users to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted Quantum archive in a .cab...
Cabextract Project Cabextract
Cabextract Project Cabextract 1.1
Cabextract Project Cabextract 0.4
Cabextract Project Cabextract 0.5
Cabextract Project Cabextract 0.1
Cabextract Project Cabextract 0.3
Cabextract Project Cabextract 0.2
Cabextract Project Cabextract 0.6
Cabextract Project Cabextract 1.0
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-37316
firmware
CVE-2024-30078
CVE-2024-5995
remote code execution
logic flaw
CVE-2024-20693
CVE-2024-37315
CVE-2024-5464
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2