CVE-2017-6301 (ytnef)
An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "4 of 9. Out of Bounds Reads."
Source: CVE-2017-6301 (ytnef)
CVE-2017-6301 (ytnef)
An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "4 of 9. Out of Bounds Reads."
Source: CVE-2017-6301 (ytnef)
CVE-2017-6307 (tnef)
An issue was discovered in tnef before 1.4.13. Two OOB Writes have been identified in src/mapi_attr.c:mapi_attr_read(). These might lead to invalid read and write operations, controlled by an attacker.
Source: CVE-2017-6307 (tnef)
CVE-2017-6309 (tnef)
An issue was discovered in tnef before 1.4.13. Two type confusions have been identified in the parse_file() function. These might lead to invalid read and write operations, controlled by an attacker.
Source: CVE-2017-6309 (tnef)
CVE-2017-6310 (tnef)
An issue was discovered in tnef before 1.4.13. Four type confusions have been identified in the file_add_mapi_attrs() function. These might lead to invalid read and write operations, controlled by an attacker.
Source: CVE-2017-6310 (tnef)
CVE-2017-6308 (tnef)
An issue was discovered in tnef before 1.4.13. Several Integer Overflows, which can lead to Heap Overflows, have been identified in the functions that wrap memory allocation.
Source: CVE-2017-6308 (tnef)
CVE-2017-6303 (ytnef)
An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "6 of 9. Invalid Write and Integer Overflow."
Source: CVE-2017-6303 (ytnef)
CVE-2017-6304 (ytnef)
An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "7 of 9. Out of Bounds read."
Source: CVE-2017-6304 (ytnef)
CVE-2017-6302 (ytnef)
An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "5 of 9. Integer Overflow."
Source: CVE-2017-6302 (ytnef)
CVE-2017-6305 (ytnef)
An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "8 of 9. Out of Bounds read and write."
Source: CVE-2017-6305 (ytnef)
CVE-2017-6306 (ytnef)
An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "9 of 9. Directory Traversal using the filename; SanitizeFilename function in settings.c."
Source: CVE-2017-6306 (ytnef)