VYPR

Catdoc

by Catdoc

CVEs (3)

  • CVE-2024-52035Jun 2, 2025
    risk 0.00cvss epss 0.00

    An integer overflow vulnerability exists in the OLE Document File Allocation Table Parser functionality of catdoc 0.95. A specially crafted malformed file can lead to heap-based memory corruption. An attacker can provide a malicious file to trigger this vulnerability.

  • CVE-2024-54028Jun 2, 2025
    risk 0.00cvss epss 0.00

    An integer underflow vulnerability exists in the OLE Document DIFAT Parser functionality of catdoc 0.95. A specially crafted malformed file can lead to heap-based memory corruption. An attacker can provide a malicious file to trigger this vulnerability.

  • CVE-2003-0193Aug 18, 2004
    risk 0.00cvss epss 0.00

    msxlsview.sh in xlsview for catdoc 0.91 and earlier allows local users to overwrite arbitrary files via a symlink attack on predictable temporary file names ("word$$.html").