Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
ytnef project ytnef vulnerabilities and exploits
(subscribe to this query)
4.3
CVSSv2
CVE-2017-9470
In ytnef 1.9.2, the MAPIPrint function in lib/ytnef.c allows remote malicious users to cause a denial of service (NULL pointer dereference and application crash) via a crafted file.
Ytnef Project Ytnef 1.9.2
4.3
CVSSv2
CVE-2017-9472
In ytnef 1.9.2, the SwapDWord function in lib/ytnef.c allows remote malicious users to cause a denial of service (heap-based buffer over-read and application crash) via a crafted file.
Ytnef Project Ytnef 1.9.2
6.8
CVSSv2
CVE-2017-9146
The TNEFFillMapi function in lib/ytnef.c in libytnef in ytnef up to and including 1.9.2 does not ensure a nonzero count value before a certain memory allocation, which allows remote malicious users to cause a denial of service (heap-based buffer overflow and application crash) or...
Ytnef Project Ytnef
7.5
CVSSv2
CVE-2017-9058
In libytnef in ytnef up to and including 1.9.2, there is a heap-based buffer over-read due to incorrect boundary checking in the SIZECHECK macro in lib/ytnef.c.
Ytnef Project Ytnef
Canonical Ubuntu Linux 14.04
5
CVSSv2
CVE-2017-6802
An issue exists in ytnef prior to 1.9.2. There is a potential heap-based buffer over-read on incoming Compressed RTF Streams, related to DecompressRTF() in libytnef.
Ytnef Project Ytnef
Debian Debian Linux 8.0
Debian Debian Linux 9.0
5
CVSSv2
CVE-2017-6800
An issue exists in ytnef prior to 1.9.2. An invalid memory access (heap-based buffer over-read) can occur during handling of LONG data types, related to MAPIPrint() in libytnef.
Ytnef Project Ytnef
Debian Debian Linux 8.0
Debian Debian Linux 9.0
5
CVSSv2
CVE-2017-6801
An issue exists in ytnef prior to 1.9.2. There is a potential out-of-bounds access with fields of Size 0 in TNEFParse() in libytnef.
Ytnef Project Ytnef
Debian Debian Linux 8.0
Debian Debian Linux 9.0
6.8
CVSSv2
CVE-2017-6298
An issue exists in ytnef prior to 1.9.1. This is related to a patch described as "1 of 9. Null Pointer Deref / calloc return value not checked."
Ytnef Project Ytnef
Debian Debian Linux 8.0
Debian Debian Linux 9.0
6.8
CVSSv2
CVE-2017-6300
An issue exists in ytnef prior to 1.9.1. This is related to a patch described as "3 of 9. Buffer Overflow in version field in lib/tnef-types.h."
Ytnef Project Ytnef
Debian Debian Linux 8.0
Debian Debian Linux 9.0
6.8
CVSSv2
CVE-2017-6302
An issue exists in ytnef prior to 1.9.1. This is related to a patch described as "5 of 9. Integer Overflow."
Ytnef Project Ytnef
Debian Debian Linux 8.0
Debian Debian Linux 9.0
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-35229
privilege escalation
local users
CVE-2024-5405
CVE-2024-27842
CVE-2024-5274
CVE-2024-5378
CVE-2024-34152
hard-coded
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
NEXT »