High severity7.8NVD Advisory· Published Mar 4, 2021· Updated Jun 17, 2026
CVE-2021-3403
CVE-2021-3403
Description
In ytnef 1.9.3, the TNEFSubjectHandler function in lib/ytnef.c allows remote attackers to cause a denial-of-service (and potentially code execution) due to a double free which can be triggered via a crafted file.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5- cpe:2.3:a:ytnef_project:ytnef:1.9.3:*:*:*:*:*:*:*
- cpe:2.3:o:fedoraproject:fedora:33:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*
- ytnef/ytnefdescription
Patches
Vulnerability mechanics
References
2- github.com/Yeraze/ytnef/issues/85nvdExploitIssue TrackingThird Party Advisory
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingThird Party Advisory
News mentions
0No linked articles in our index yet.