9.8
CVSSv3

CVE-2021-20308

Published: 05/04/2021 Updated: 03/12/2021
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Integer overflow in the htmldoc 1.9.11 and before may allow malicious users to execute arbitrary code and cause a denial of service that is similar to CVE-2017-9181.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

htmldoc project htmldoc

debian debian linux 9.0

Vendor Advisories

Debian Bug report logs - #984765 htmldoc: CVE-2021-20308: buffer-overflow caused by integer-overflow in image_load_gif() Package: htmldoc; Maintainer for htmldoc is Håvard Flaget Aasen <haavard_aasen@yahoono>; Source for htmldoc is src:htmldoc (PTS, buildd, popcon) Reported by: Wooseok Kang <kangwoosuk1@gmailcom> ...
Integer overflow in htmldoc 1911 and before may allow attackers to execute arbitrary code and cause a denial of service that is similar to CVE-2017-9181 ...