7.8
CVSSv3

CVE-2021-26948

Published: 03/03/2022 Updated: 07/11/2023
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Null pointer dereference in the htmldoc v1.9.11 and before may allow malicious users to execute arbitrary code and cause a denial of service via a crafted html file.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

htmldoc project htmldoc 1.9.11

Vendor Advisories

Debian Bug report logs - #989437 CVE-2021-23165 CVE-2021-26948 CVE-2021-26259 CVE-2021-26252 CVE-2021-23206 CVE-2021-23191 CVE-2021-23180 CVE-2021-23158 Package: htmldoc; Maintainer for htmldoc is Håvard Flaget Aasen <haavard_aasen@yahoono>; Source for htmldoc is src:htmldoc (PTS, buildd, popcon) Reported by: Moritz Muehle ...
A buffer overflow was discovered in HTMLDOC, a HTML processor that generates indexed HTML, PS, and PDF, which could potentially result in the execution of arbitrary code In addition a number of crashes were addressed For the stable distribution (buster), these problems have been fixed in version 193-1+deb10u2 We recommend that you upgrade your ...
A null pointer dereference in htmldoc before version 1912 may allow attackers to cause a denial of service via a crafted html file ...