VYPR

Htmldoc

by Htmldoc

CVEs (24)

  • CVE-2021-23180HigMar 2, 2022
    risk 0.00cvss 7.8epss 0.01

    A flaw was found in htmldoc in v1.9.12 and before. Null pointer dereference in file_extension(),in file.c may lead to execute arbitrary code and denial of service.

  • CVE-2022-0534MedFeb 9, 2022
    risk 0.00cvss 5.5epss 0.01

    A vulnerability was found in htmldoc version 1.9.15 where the stack out-of-bounds read takes place in gif_get_code() and occurs when opening a malicious GIF file, which can result in a crash (segmentation fault).

  • CVE-2021-40985MedNov 3, 2021
    risk 0.00cvss 5.5epss 0.01

    A stack-based buffer under-read in htmldoc before 1.9.12, allows attackers to cause a denial of service via a crafted BMP image to image_load_bmp.

  • CVE-2009-3050Sep 2, 2009
    risk 0.00cvss epss 0.04

    Buffer overflow in the set_page_size function in util.cxx in HTMLDOC 1.8.27 and earlier allows context-dependent attackers to execute arbitrary code via a long MEDIA SIZE comment. NOTE: it was later reported that there were additional vectors in htmllib.cxx and ps-pdf.cxx using…

Page 2 of 2