4.3
CVSSv2

CVE-2010-5109

Published: 05/05/2014 Updated: 05/05/2014
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

Off-by-one error in the DecompressRTF function in ytnef.c in Yerase's TNEF Stream Reader allows remote malicious users to cause a denial of service (crash) via a crafted TNEF file, which triggers a buffer overflow.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

fedoraproject fedora 17

fedoraproject fedora 16

randall hand yerase\\'s tnef stream reader -

Vendor Advisories

Debian Bug report logs - #705468 libytnef: Buffer overflow (CVE-2010-5109) Package: libytnef; Maintainer for libytnef is Ricardo Mones <mones@debianorg>; Reported by: Henri Salo <henri@nervfi> Date: Mon, 15 Apr 2013 11:51:02 UTC Severity: normal Tags: security Found in version 15-4 Fixed in version libytnef/15-5 ...