Vulnerabilities
Vulnerable Software
Ytnef Project:  >> Ytnef  >> 1.9.2  Security Vulnerabilities
The TNEFFillMapi function in lib/ytnef.c in libytnef in ytnef through 1.9.2 does not ensure a nonzero count value before a certain memory allocation, which allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted tnef file.
CVSS Score
8.8
EPSS Score
0.006
Published
2017-05-22
In libytnef in ytnef through 1.9.2, there is a heap-based buffer over-read due to incorrect boundary checking in the SIZECHECK macro in lib/ytnef.c.
CVSS Score
9.8
EPSS Score
0.004
Published
2017-05-18


Contact Us

Shodan ® - All rights reserved