Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2741▲ 14 respecto a la semana anterior
Críticas / altas1459▲ 324 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)85▼ 441 respecto a la semana anterior
–

24 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaCrítica (9.8)0.67%—Htmldoc Project Htmldoc24/10/202417/6/2026
HTMLDOC v1.9.18 contains a buffer overflow in parse_pre function,ps-pdf.cxx:5681.
AnalizadaCrítica (9.8)0.70%—Htmldoc Project Htmldoc1/9/202417/6/2026
HTMLDOC before 1.9.19 has an out-of-bounds write in parse_paragraph in ps-pdf.cxx because of an attempt to strip leading whitespace from a whitespace-only node.
ModificadaAlta (7.8)0.34%—Htmldoc Project Htmldoc18/7/202317/6/2026
An Out of Bounds flaw was discovered in htmodoc 1.9.12 in function parse_tree() in toc.cxx, this possibly leads to memory layout information leaking in the data. This might be used in a chain of vulnerability in order to reach code execution.
ModificadaAlta (7.8)0.34%—Htmldoc Project Htmldoc18/7/202317/6/2026
A flaw was discovered in htmodoc 1.9.12 in function parse_paragraph in ps-pdf.cxx ,this flaw possibly allows possible code execution and a denial of service via a crafted file.
ModificadaMedia (5.5)0.59%—Htmldoc Project Htmldoc14/11/202217/6/2026
A heap buffer overflow in image_set_mask function of HTMLDOC before 1.9.15 allows an attacker to write outside the buffer boundaries.
ModificadaAlta (7.5)1.6%—Htmldoc Project Htmldoc18/7/202217/6/2026
HTMLDoc v1.9.12 and below was discovered to contain a heap overflow via e_node htmldoc/htmldoc/html.cxx:588.
ModificadaAlta (7.5)1.6%—Htmldoc Project Htmldoc18/7/202217/6/2026
HTMLDoc v1.9.15 was discovered to contain a heap overflow via (write_header) /htmldoc/htmldoc/html.cxx:273.
ModificadaMedia (5.5)0.96%—Htmldoc Project HtmldocDebian Linux9/5/202217/6/2026
There is a vulnerability in htmldoc 1.9.16. In image_load_jpeg function image.cxx when it calls malloc,'img->width' and 'img->height' they are large enough to cause an integer overflow. So, the malloc function may return a heap blosmaller than the expected size, and it will cause a buffer overflow/Address boundary…
AnalizadaAlta (7.8)1.2%—Htmldoc Project Htmldoc27/4/202217/6/2026
A flaw was found in htmldoc commit 31f7804. A heap buffer overflow in the function pdf_write_names in ps-pdf.cxx may lead to arbitrary code execution and Denial of Service (DoS).
ModificadaMedia (5.5)0.74%—Htmldoc Project HtmldocFedoraproject Fedora4/4/202217/6/2026
In HTMLDOC 1.9.14, an infinite loop in the gif_read_lzw function can lead to a pointer arbitrarily pointing to heap memory and resulting in a buffer overflow.
AnalizadaCrítica (9.8)3.5%—Htmldoc Project Htmldoc16/3/202217/6/2026
A flaw was found in htmldoc before v1.9.12. Heap buffer overflow in pspdf_prepare_outpages(), in ps-pdf.cxx may lead to execute arbitrary code and denial of service.
ModificadaCrítica (9.8)2.4%—Htmldoc Project Htmldoc16/3/202217/6/2026
A flaw was found in htmldoc in v1.9.12. Double-free in function pspdf_export(),in ps-pdf.cxx may result in a write-what-where condition, allowing an attacker to execute arbitrary code and denial of service.
ModificadaAlta (7.8)0.84%—Htmldoc Project Htmldoc3/3/202217/6/2026
Null pointer dereference in the htmldoc v1.9.11 and before may allow attackers to execute arbitrary code and cause a denial of service via a crafted html file.
ModificadaAlta (7.8)1.2%—Htmldoc Project Htmldoc3/3/202217/6/2026
A flaw was found in htmldoc in v1.9.12. Heap buffer overflow in render_table_row(),in ps-pdf.cxx may lead to arbitrary code execution and denial of service.
ModificadaAlta (7.8)1.5%—Htmldoc Project Htmldoc2/3/202217/6/2026
A flaw was found in htmldoc in v1.9.12 and prior. A stack buffer overflow in parse_table() in ps-pdf.cxx may lead to execute arbitrary code and denial of service.
ModificadaAlta (7.8)1.1%—Htmldoc Project Htmldoc2/3/202217/6/2026
A security issue was found in htmldoc v1.9.12 and before. A NULL pointer dereference in the function image_load_jpeg() in image.cxx may result in denial of service.
ModificadaAlta (7.8)1.4%—Htmldoc Project Htmldoc2/3/202217/6/2026
A flaw was found in htmldoc in v1.9.12 and before. Null pointer dereference in file_extension(),in file.c may lead to execute arbitrary code and denial of service.
ModificadaAlta (7.8)0.96%—Htmldoc Project HtmldocRedhat Enterprise LinuxFedoraproject Fedora24/2/202217/6/2026
A flaw was found in htmldoc in v1.9.12. Heap buffer overflow in pspdf_prepare_page(),in ps-pdf.cxx may lead to execute arbitrary code and denial of service.
ModificadaMedia (5.5)0.94%—Htmldoc Project HtmldocDebian Linux9/2/202217/6/2026
A vulnerability was found in htmldoc version 1.9.15 where the stack out-of-bounds read takes place in gif_get_code() and occurs when opening a malicious GIF file, which can result in a crash (segmentation fault).
ModificadaAlta (7.8)7.3%—Htmldoc Project HtmldocDebian Linux10/1/202217/6/2026
A stack-based buffer overflow in image_load_bmp() in HTMLDOC <= 1.9.13 results in remote code execution if the victim converts an HTML document linking to a crafted BMP file.
ModificadaMedia (5.5)0.94%—Htmldoc Project HtmldocDebian Linux3/11/202117/6/2026
A stack-based buffer under-read in htmldoc before 1.9.12, allows attackers to cause a denial of service via a crafted BMP image to image_load_bmp.
ModificadaCrítica (9.8)2.5%—Htmldoc Project HtmldocDebian Linux5/4/202117/6/2026
Integer overflow in the htmldoc 1.9.11 and before may allow attackers to execute arbitrary code and cause a denial of service that is similar to CVE-2017-9181.
ModificadaAlta (7.8)1.1%—Htmldoc Project HtmldocDebian LinuxFedoraproject Fedora8/12/201917/6/2026
HTMLDOC 1.9.7 allows a stack-based buffer overflow in the hd_strlcpy() function in string.c (when called from render_contents in ps-pdf.cxx) via a crafted HTML document.
ModificadaAlta (10)4.4%—Htmldoc2/9/200916/6/2026
Buffer overflow in the set_page_size function in util.cxx in HTMLDOC 1.8.27 and earlier allows context-dependent attackers to execute arbitrary code via a long MEDIA SIZE comment. NOTE: it was later reported that there were additional vectors in htmllib.cxx and ps-pdf.cxx using an AFM font file with a long glyph name,…