An issue exists in ytnef prior to 1.9.2. There is a potential heap-based buffer over-read on incoming Compressed RTF Streams, related to DecompressRTF() in libytnef.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
ytnef project ytnef |
||
debian debian linux 8.0 |
||
debian debian linux 9.0 |