Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2632▼ 307 respecto a la semana anterior
Críticas / altas1348▲ 75 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)62▼ 465 respecto a la semana anterior
–

26 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.8)1.6%—Gnome EvolutionYtnef Project Ytnef26/5/202116/6/2026
Multiple directory traversal and buffer overflow vulnerabilities were discovered in yTNEF, and in Evolution's TNEF parser that is derived from yTNEF. A crafted email could cause these applications to write data in arbitrary locations on the filesystem, crash, or potentially execute arbitrary code when decoding…
ModificadaAlta (7.8)1.9%—Ytnef Project YtnefRedhat Enterprise LinuxFedoraproject Fedora4/3/202117/6/2026
In ytnef 1.9.3, the SwapWord function in lib/ytnef.c allows remote attackers to cause a denial-of-service (and potentially code execution) due to a heap buffer overflow which can be triggered via a crafted file.
ModificadaAlta (7.8)1.8%—Ytnef Project YtnefRedhat Enterprise LinuxFedoraproject Fedora4/3/202117/6/2026
In ytnef 1.9.3, the TNEFSubjectHandler function in lib/ytnef.c allows remote attackers to cause a denial-of-service (and potentially code execution) due to a double free which can be triggered via a crafted file.
ModificadaCrítica (9.8)2.5%—Ytnef Project Ytnef29/10/201916/6/2026
ytnef has directory traversal
ModificadaMedia (5.5)1.0%—Ytnef Project Ytnef2/8/201717/6/2026
In ytnef 1.9.2, an allocation failure was found in the function TNEFFillMapi in ytnef.c, which allows attackers to cause a denial of service via a crafted file.
ModificadaMedia (5.5)0.97%—Ytnef Project Ytnef2/8/201717/6/2026
In ytnef 1.9.2, an invalid memory read vulnerability was found in the function SwapDWord in ytnef.c, which allows attackers to cause a denial of service via a crafted file.
ModificadaMedia (5.5)1.1%—Ytnef Project Ytnef2/8/201717/6/2026
In ytnef 1.9.2, a heap-based buffer overflow vulnerability was found in the function TNEFFillMapi in ytnef.c, which allows attackers to cause a denial of service via a crafted file.
ModificadaMedia (5.5)0.94%—Ytnef Project Ytnef7/6/201717/6/2026
In ytnef 1.9.2, the DecompressRTF function in lib/ytnef.c allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted file.
ModificadaMedia (5.5)1.2%—Ytnef Project YtnefCanonical Ubuntu Linux7/6/201717/6/2026
In ytnef 1.9.2, the TNEFFillMapi function in lib/ytnef.c allows remote attackers to cause a denial of service (memory consumption) via a crafted file.
ModificadaMedia (5.5)0.94%—Ytnef Project Ytnef7/6/201717/6/2026
In ytnef 1.9.2, the SwapDWord function in lib/ytnef.c allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted file.
ModificadaMedia (5.5)1.2%—Ytnef Project YtnefCanonical Ubuntu Linux7/6/201717/6/2026
In ytnef 1.9.2, the SwapWord function in lib/ytnef.c allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted file.
ModificadaMedia (5.5)0.94%—Ytnef Project Ytnef7/6/201717/6/2026
In ytnef 1.9.2, the MAPIPrint function in lib/ytnef.c allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted file.
ModificadaAlta (8.8)2.4%—Ytnef Project Ytnef22/5/201717/6/2026
The TNEFFillMapi function in lib/ytnef.c in libytnef in ytnef through 1.9.2 does not ensure a nonzero count value before a certain memory allocation, which allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted…
ModificadaCrítica (9.8)1.5%—Ytnef Project YtnefCanonical Ubuntu Linux18/5/201717/6/2026
In libytnef in ytnef through 1.9.2, there is a heap-based buffer over-read due to incorrect boundary checking in the SIZECHECK macro in lib/ytnef.c.
ModificadaAlta (7.5)1.4%—Ytnef Project YtnefDebian Linux10/3/201717/6/2026
An issue was discovered in ytnef before 1.9.2. There is a potential heap-based buffer over-read on incoming Compressed RTF Streams, related to DecompressRTF() in libytnef.
ModificadaAlta (7.5)1.9%—Ytnef Project YtnefDebian Linux10/3/201717/6/2026
An issue was discovered in ytnef before 1.9.2. There is a potential out-of-bounds access with fields of Size 0 in TNEFParse() in libytnef.
ModificadaAlta (7.5)1.7%—Ytnef Project YtnefDebian Linux10/3/201717/6/2026
An issue was discovered in ytnef before 1.9.2. An invalid memory access (heap-based buffer over-read) can occur during handling of LONG data types, related to MAPIPrint() in libytnef.
ModificadaAlta (7.8)2.1%—Ytnef Project YtnefDebian Linux24/2/201717/6/2026
An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "9 of 9. Directory Traversal using the filename; SanitizeFilename function in settings.c."
ModificadaAlta (7.8)1.2%—Ytnef Project YtnefDebian Linux24/2/201717/6/2026
An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "8 of 9. Out of Bounds read and write."
ModificadaAlta (7.8)1.2%—Ytnef Project YtnefDebian Linux24/2/201717/6/2026
An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "7 of 9. Out of Bounds read."
ModificadaAlta (7.8)1.3%—Ytnef Project YtnefDebian Linux24/2/201717/6/2026
An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "6 of 9. Invalid Write and Integer Overflow."
ModificadaAlta (7.8)1.2%—Ytnef Project YtnefDebian Linux24/2/201717/6/2026
An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "5 of 9. Integer Overflow."
ModificadaAlta (7.8)1.2%—Ytnef Project YtnefDebian Linux24/2/201717/6/2026
An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "4 of 9. Out of Bounds Reads."
ModificadaAlta (7.8)1.3%—Ytnef Project YtnefDebian Linux24/2/201717/6/2026
An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "3 of 9. Buffer Overflow in version field in lib/tnef-types.h."
ModificadaMedia (5.5)1.2%—Ytnef Project YtnefDebian Linux24/2/201717/6/2026
An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "2 of 9. Infinite Loop / DoS in the TNEFFillMapi function in lib/ytnef.c."