Known Vulnerabilities for products from Ytnef Project

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Ytnef Project".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2021-3404 json In ytnef 1.9.3, the SwapWord function in lib/ytnef.c allows remote attackers to cause a denial-of-service (and potentially co... 7.8 - HIGH 2021-03-04 2022-04-25
CVE-2021-3403 json In ytnef 1.9.3, the TNEFSubjectHandler function in lib/ytnef.c allows remote attackers to cause a denial-of-service (and pote... 7.8 - HIGH 2021-03-04 2022-04-25
CVE-2017-12144 json In ytnef 1.9.2, an allocation failure was found in the function TNEFFillMapi in ytnef.c, which allows attackers to cause a de... 5.5 - MEDIUM 2017-08-02 2023-11-07
CVE-2017-12142 json In ytnef 1.9.2, an invalid memory read vulnerability was found in the function SwapDWord in ytnef.c, which allows attackers t... 5.5 - MEDIUM 2017-08-02 2023-11-07
CVE-2017-12141 json In ytnef 1.9.2, a heap-based buffer overflow vulnerability was found in the function TNEFFillMapi in ytnef.c, which allows at... 5.5 - MEDIUM 2017-08-02 2023-11-07
CVE-2017-9474 json In ytnef 1.9.2, the DecompressRTF function in lib/ytnef.c allows remote attackers to cause a denial of service (heap-based bu... 5.5 - MEDIUM 2017-06-07 2023-11-07
CVE-2017-9473 json In ytnef 1.9.2, the TNEFFillMapi function in lib/ytnef.c allows remote attackers to cause a denial of service (memory consump... 5.5 - MEDIUM 2017-06-07 2023-11-07
CVE-2017-9472 json In ytnef 1.9.2, the SwapDWord function in lib/ytnef.c allows remote attackers to cause a denial of service (heap-based buffer... 5.5 - MEDIUM 2017-06-07 2023-11-07
CVE-2017-9471 json In ytnef 1.9.2, the SwapWord function in lib/ytnef.c allows remote attackers to cause a denial of service (heap-based buffer ... 5.5 - MEDIUM 2017-06-07 2023-11-07
CVE-2017-9470 json In ytnef 1.9.2, the MAPIPrint function in lib/ytnef.c allows remote attackers to cause a denial of service (NULL pointer dere... 5.5 - MEDIUM 2017-06-07 2023-11-07
CVE-2017-9146 json The TNEFFillMapi function in lib/ytnef.c in libytnef in ytnef through 1.9.2 does not ensure a nonzero count value before a ce... 8.8 - HIGH 2017-05-22 2023-11-07
CVE-2017-9058 json In libytnef in ytnef through 1.9.2, there is a heap-based buffer over-read due to incorrect boundary checking in the SIZECHEC... 9.8 - CRITICAL 2017-05-18 2023-11-07
CVE-2017-6802 json An issue was discovered in ytnef before 1.9.2. There is a potential heap-based buffer over-read on incoming Compressed RTF St... 7.5 - HIGH 2017-03-10 2023-11-07
CVE-2017-6801 json An issue was discovered in ytnef before 1.9.2. There is a potential out-of-bounds access with fields of Size 0 in TNEFParse()... 7.5 - HIGH 2017-03-10 2023-11-07
CVE-2017-6800 json An issue was discovered in ytnef before 1.9.2. An invalid memory access (heap-based buffer over-read) can occur during handli... 7.5 - HIGH 2017-03-10 2023-11-07
CVE-2017-6306 json An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "9 of 9. Directory Traversal using the... 7.8 - HIGH 2017-02-24 2023-11-07
CVE-2017-6305 json An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "8 of 9. Out of Bounds read and write.... 7.8 - HIGH 2017-02-24 2023-11-07
CVE-2017-6304 json An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "7 of 9. Out of Bounds read." 7.8 - HIGH 2017-02-24 2023-11-07
CVE-2017-6303 json An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "6 of 9. Invalid Write and Integer Ove... 7.8 - HIGH 2017-02-24 2023-11-07
CVE-2017-6302 json An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "5 of 9. Integer Overflow." 7.8 - HIGH 2017-02-24 2023-11-07

Known software with vulnerabilities from Ytnef Project

Type Vendor Product Version
ApplicationYtnef ProjectYtnef1.7