Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2632▼ 307 respecto a la semana anterior
Críticas / altas1348▲ 75 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)62▼ 465 respecto a la semana anterior
26 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.8) | 1.6% | — | Gnome EvolutionYtnef Project Ytnef | 26/5/2021 | 16/6/2026 | Multiple directory traversal and buffer overflow vulnerabilities were discovered in yTNEF, and in Evolution's TNEF parser that is derived from yTNEF. A crafted email could cause these applications to write data in arbitrary locations on the filesystem, crash, or potentially execute arbitrary code when decoding… | |
| Modificada | Alta (7.8) | 1.9% | — | Ytnef Project YtnefRedhat Enterprise LinuxFedoraproject Fedora | 4/3/2021 | 17/6/2026 | In ytnef 1.9.3, the SwapWord function in lib/ytnef.c allows remote attackers to cause a denial-of-service (and potentially code execution) due to a heap buffer overflow which can be triggered via a crafted file. | |
| Modificada | Alta (7.8) | 1.8% | — | Ytnef Project YtnefRedhat Enterprise LinuxFedoraproject Fedora | 4/3/2021 | 17/6/2026 | In ytnef 1.9.3, the TNEFSubjectHandler function in lib/ytnef.c allows remote attackers to cause a denial-of-service (and potentially code execution) due to a double free which can be triggered via a crafted file. | |
| Modificada | Crítica (9.8) | 2.5% | — | Ytnef Project Ytnef | 29/10/2019 | 16/6/2026 | ytnef has directory traversal | |
| Modificada | Media (5.5) | 1.0% | — | Ytnef Project Ytnef | 2/8/2017 | 17/6/2026 | In ytnef 1.9.2, an allocation failure was found in the function TNEFFillMapi in ytnef.c, which allows attackers to cause a denial of service via a crafted file. | |
| Modificada | Media (5.5) | 0.97% | — | Ytnef Project Ytnef | 2/8/2017 | 17/6/2026 | In ytnef 1.9.2, an invalid memory read vulnerability was found in the function SwapDWord in ytnef.c, which allows attackers to cause a denial of service via a crafted file. | |
| Modificada | Media (5.5) | 1.1% | — | Ytnef Project Ytnef | 2/8/2017 | 17/6/2026 | In ytnef 1.9.2, a heap-based buffer overflow vulnerability was found in the function TNEFFillMapi in ytnef.c, which allows attackers to cause a denial of service via a crafted file. | |
| Modificada | Media (5.5) | 0.94% | — | Ytnef Project Ytnef | 7/6/2017 | 17/6/2026 | In ytnef 1.9.2, the DecompressRTF function in lib/ytnef.c allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted file. | |
| Modificada | Media (5.5) | 1.2% | — | Ytnef Project YtnefCanonical Ubuntu Linux | 7/6/2017 | 17/6/2026 | In ytnef 1.9.2, the TNEFFillMapi function in lib/ytnef.c allows remote attackers to cause a denial of service (memory consumption) via a crafted file. | |
| Modificada | Media (5.5) | 0.94% | — | Ytnef Project Ytnef | 7/6/2017 | 17/6/2026 | In ytnef 1.9.2, the SwapDWord function in lib/ytnef.c allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted file. | |
| Modificada | Media (5.5) | 1.2% | — | Ytnef Project YtnefCanonical Ubuntu Linux | 7/6/2017 | 17/6/2026 | In ytnef 1.9.2, the SwapWord function in lib/ytnef.c allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted file. | |
| Modificada | Media (5.5) | 0.94% | — | Ytnef Project Ytnef | 7/6/2017 | 17/6/2026 | In ytnef 1.9.2, the MAPIPrint function in lib/ytnef.c allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted file. | |
| Modificada | Alta (8.8) | 2.4% | — | Ytnef Project Ytnef | 22/5/2017 | 17/6/2026 | The TNEFFillMapi function in lib/ytnef.c in libytnef in ytnef through 1.9.2 does not ensure a nonzero count value before a certain memory allocation, which allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted… | |
| Modificada | Crítica (9.8) | 1.5% | — | Ytnef Project YtnefCanonical Ubuntu Linux | 18/5/2017 | 17/6/2026 | In libytnef in ytnef through 1.9.2, there is a heap-based buffer over-read due to incorrect boundary checking in the SIZECHECK macro in lib/ytnef.c. | |
| Modificada | Alta (7.5) | 1.4% | — | Ytnef Project YtnefDebian Linux | 10/3/2017 | 17/6/2026 | An issue was discovered in ytnef before 1.9.2. There is a potential heap-based buffer over-read on incoming Compressed RTF Streams, related to DecompressRTF() in libytnef. | |
| Modificada | Alta (7.5) | 1.9% | — | Ytnef Project YtnefDebian Linux | 10/3/2017 | 17/6/2026 | An issue was discovered in ytnef before 1.9.2. There is a potential out-of-bounds access with fields of Size 0 in TNEFParse() in libytnef. | |
| Modificada | Alta (7.5) | 1.7% | — | Ytnef Project YtnefDebian Linux | 10/3/2017 | 17/6/2026 | An issue was discovered in ytnef before 1.9.2. An invalid memory access (heap-based buffer over-read) can occur during handling of LONG data types, related to MAPIPrint() in libytnef. | |
| Modificada | Alta (7.8) | 2.1% | — | Ytnef Project YtnefDebian Linux | 24/2/2017 | 17/6/2026 | An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "9 of 9. Directory Traversal using the filename; SanitizeFilename function in settings.c." | |
| Modificada | Alta (7.8) | 1.2% | — | Ytnef Project YtnefDebian Linux | 24/2/2017 | 17/6/2026 | An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "8 of 9. Out of Bounds read and write." | |
| Modificada | Alta (7.8) | 1.2% | — | Ytnef Project YtnefDebian Linux | 24/2/2017 | 17/6/2026 | An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "7 of 9. Out of Bounds read." | |
| Modificada | Alta (7.8) | 1.3% | — | Ytnef Project YtnefDebian Linux | 24/2/2017 | 17/6/2026 | An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "6 of 9. Invalid Write and Integer Overflow." | |
| Modificada | Alta (7.8) | 1.2% | — | Ytnef Project YtnefDebian Linux | 24/2/2017 | 17/6/2026 | An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "5 of 9. Integer Overflow." | |
| Modificada | Alta (7.8) | 1.2% | — | Ytnef Project YtnefDebian Linux | 24/2/2017 | 17/6/2026 | An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "4 of 9. Out of Bounds Reads." | |
| Modificada | Alta (7.8) | 1.3% | — | Ytnef Project YtnefDebian Linux | 24/2/2017 | 17/6/2026 | An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "3 of 9. Buffer Overflow in version field in lib/tnef-types.h." | |
| Modificada | Media (5.5) | 1.2% | — | Ytnef Project YtnefDebian Linux | 24/2/2017 | 17/6/2026 | An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "2 of 9. Infinite Loop / DoS in the TNEFFillMapi function in lib/ytnef.c." |