VendorsYTNEF Projectytnef1.9.2
Vulnerabilities

YTNEF Project YTNEF 1.9.2

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

8CVEs
CVE-2017-9473
In ytnef 1.9.2, the TNEFFillMapi function in lib/ytnef.c allows remote attackers to cause a denial of service (memory consumption) via a crafted file.
Published 2017-06-07 · Modified
5.5EPSS 0.012
CVE-2017-9471
In ytnef 1.9.2, the SwapWord function in lib/ytnef.c allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted file.
Published 2017-06-07 · Modified
5.5EPSS 0.012
CVE-2017-12141
In ytnef 1.9.2, a heap-based buffer overflow vulnerability was found in the function TNEFFillMapi in ytnef.c, which allows attackers to cause a denial of service via a crafted file.
Published 2017-08-02 · Modified
5.5EPSS 0.011
CVE-2017-12144
In ytnef 1.9.2, an allocation failure was found in the function TNEFFillMapi in ytnef.c, which allows attackers to cause a denial of service via a crafted file.
Published 2017-08-02 · Modified
5.5EPSS 0.010
CVE-2017-12142
In ytnef 1.9.2, an invalid memory read vulnerability was found in the function SwapDWord in ytnef.c, which allows attackers to cause a denial of service via a crafted file.
Published 2017-08-02 · Modified
5.5EPSS 0.010
CVE-2017-9474
In ytnef 1.9.2, the DecompressRTF function in lib/ytnef.c allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted file.
Published 2017-06-07 · Modified
5.5EPSS 0.009
CVE-2017-9470
In ytnef 1.9.2, the MAPIPrint function in lib/ytnef.c allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted file.
Published 2017-06-07 · Modified
5.5EPSS 0.009
CVE-2017-9472
In ytnef 1.9.2, the SwapDWord function in lib/ytnef.c allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted file.
Published 2017-06-07 · Modified
5.5EPSS 0.009