Unrated severityNVD Advisory· Published Dec 9, 2014· Updated May 6, 2026
CVE-2014-9274
CVE-2014-9274
Description
UnRTF allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code as demonstrated by a file containing the string "{\cb-999999999".
Affected products
5- cpe:2.3:o:fedoraproject:fedora:21:*:*:*:*:*:*:*
- cpe:2.3:a:mageia_project:mageia:4:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*
- cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
10- lists.gnu.org/archive/html/bug-unrtf/2014-11/msg00001.htmlnvdExploitVendor Advisory
- advisories.mageia.org/MGASA-2014-0533.htmlnvd
- lists.fedoraproject.org/pipermail/package-announce/2015-January/147399.htmlnvd
- secunia.com/advisories/62811nvd
- www.debian.org/security/2015/dsa-3158nvd
- www.mandriva.com/security/advisoriesnvd
- www.openwall.com/lists/oss-security/2014/12/04/15nvd
- www.securityfocus.com/bid/71430nvd
- bugzilla.redhat.com/show_bug.cginvd
- security.gentoo.org/glsa/201507-06nvd
News mentions
0No linked articles in our index yet.