Known Vulnerabilities for products from Cabextract

Listed below are 8 of the newest known vulnerabilities associated with the vendor "Cabextract".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2018-14682 An issue was discovered in mspack/chmd.c in libmspack before 0.7alpha. There is an off-by-one error in the TOLOWER() macro fo... 8.8 - HIGH 2018-07-28 2021-04-26
CVE-2018-14681 An issue was discovered in kwajd_read_headers in mspack/kwajd.c in libmspack before 0.7alpha. Bad KWAJ file header extensions... 8.8 - HIGH 2018-07-28 2021-04-26
CVE-2018-14680 An issue was discovered in mspack/chmd.c in libmspack before 0.7alpha. It does not reject blank CHM filenames. 6.5 - MEDIUM 2018-07-28 2021-04-26
CVE-2018-14679 An issue was discovered in mspack/chmd.c in libmspack before 0.7alpha. There is an off-by-one error in the CHM PMGI/PMGL chun... 6.5 - MEDIUM 2018-07-28 2021-04-26
CVE-2015-2060 cabextract before 1.6 does not properly check for leading slashes when extracting files, which allows remote attackers to con... 5.3 - MEDIUM 2019-11-29 2021-04-26
CVE-2010-2801 Integer signedness error in the Quantum decompressor in cabextract before 1.3, when archive test mode is used, allows user-as... 5.1 - MEDIUM 2010-08-09 2021-04-26
CVE-2010-2800 The MS-ZIP decompressor in cabextract before 1.3 allows remote attackers to cause a denial of service (infinite loop) via a m... 4.3 - MEDIUM 2010-08-09 2021-04-26
CVE-2004-0916 Directory traversal vulnerability in cabextract before 1.1 allows remote attackers to overwrite arbitrary files via a cabinet... 5 - MEDIUM 2005-01-27 2021-04-26

Known software with vulnerabilities from Cabextract

Type Vendor Product Version
ApplicationCabextractCabextract0.1