Unrated severityNVD Advisory· Published Feb 3, 2015· Updated Jun 17, 2026
CVE-2014-9556
CVE-2014-9556
Description
Integer overflow in the qtmd_decompress function in libmspack 0.4 allows remote attackers to cause a denial of service (hang) via a crafted CAB file, which triggers an infinite loop.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
8cpe:2.3:a:libmspack_project:libmspack:0.4:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:libmspack_project:libmspack:0.4:*:*:*:*:*:*:*
- (no CPE)range: <= 0.4
- osv-coords6 versionspkg:rpm/suse/cabextract&distro=SUSE%20Linux%20Enterprise%20Desktop%2011%20SP3pkg:rpm/suse/cabextract&distro=SUSE%20Linux%20Enterprise%20Desktop%2011%20SP4pkg:rpm/suse/libmspack&distro=SUSE%20Linux%20Enterprise%20Desktop%2012pkg:rpm/suse/libmspack&distro=SUSE%20Linux%20Enterprise%20Server%2012pkg:rpm/suse/libmspack&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012pkg:rpm/suse/libmspack&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012
< 1.2-2.12.1+ 5 more
- (no CPE)range: < 1.2-2.12.1
- (no CPE)range: < 1.2-2.12.1
- (no CPE)range: < 0.4-6.1
- (no CPE)range: < 0.4-6.1
- (no CPE)range: < 0.4-6.1
- (no CPE)range: < 0.4-6.1
Patches
Vulnerability mechanics
References
7- bugs.debian.org/cgi-bin/bugreport.cginvdExploit
- advisories.mageia.org/MGASA-2015-0052.htmlnvd
- lists.opensuse.org/opensuse-updates/2015-02/msg00004.htmlnvd
- secunia.com/advisories/62793nvd
- www.mandriva.com/security/advisoriesnvd
- www.openwall.com/lists/oss-security/2015/01/01/5nvd
- www.openwall.com/lists/oss-security/2015/01/07/2nvd
News mentions
0No linked articles in our index yet.