Bfabiszewski
Products
2- 19 CVEs
- 10 CVEs
Recent CVEs
21| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2018-11726 | Hig | 0.57 | 8.8 | 0.03 | Jun 19, 2018 | The mobi_decode_font_resource function in util.c in Libmobi 0.3 allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via a crafted mobi file. | ||
| CVE-2018-11724 | Hig | 0.57 | 8.8 | 0.02 | Jun 19, 2018 | The mobi_pk1_decrypt function in encryption.c in Libmobi 0.3 allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via a crafted mobi file. | ||
| CVE-2018-11438 | Hig | 0.57 | 8.8 | 0.03 | May 30, 2018 | The mobi_decompress_lz77 function in compression.c in Libmobi 0.3 allows remote attackers to cause remote code execution (heap-based buffer overflow) via a crafted mobi file. | ||
| CVE-2018-11725 | Med | 0.42 | 6.5 | 0.03 | Jun 19, 2018 | The mobi_parse_index_entry function in index.c in Libmobi 0.3 allows remote attackers to cause an information disclosure (heap-based buffer over-read) via a crafted mobi file. | ||
| CVE-2018-11437 | Med | 0.42 | 6.5 | 0.01 | May 30, 2018 | The mobi_reconstruct_parts function in parse_rawml.c in Libmobi 0.3 allows remote attackers to cause information disclosure (read access violation) via a crafted mobi file. | ||
| CVE-2018-11436 | Med | 0.42 | 6.5 | 0.01 | May 30, 2018 | The buffer_addraw function in buffer.c in Libmobi 0.3 allows remote attackers to cause information disclosure (heap-based buffer over-read) via a crafted mobi file. | ||
| CVE-2018-11435 | Med | 0.42 | 6.5 | 0.01 | May 30, 2018 | The mobi_decompress_huffman_internal function in compression.c in Libmobi 0.3 allows remote attackers to cause information disclosure (read access violation) via a crafted mobi file. | ||
| CVE-2018-11434 | Med | 0.42 | 6.5 | 0.01 | May 30, 2018 | The buffer_fill64 function in compression.c in Libmobi 0.3 allows remote attackers to cause information disclosure (heap-based buffer over-read) via a crafted mobi file. | ||
| CVE-2018-11433 | Med | 0.42 | 6.5 | 0.01 | May 30, 2018 | The mobi_get_kf8boundary_seqnumber function in util.c in Libmobi 0.3 allows remote attackers to cause information disclosure (heap-based buffer over-read) via a crafted mobi file. | ||
| CVE-2018-11432 | Med | 0.42 | 6.5 | 0.01 | May 30, 2018 | The mobi_parse_mobiheader function in read.c in Libmobi 0.3 allows remote attackers to cause information disclosure (heap-based buffer over-read) via a crafted mobi file. | ||
| CVE-2022-2279 | 0.00 | — | 0.01 | Jul 1, 2022 | NULL Pointer Dereference in GitHub repository bfabiszewski/libmobi prior to 0.11. | |||
| CVE-2022-1987 | 0.00 | — | 0.01 | Jun 3, 2022 | Buffer Over-read in GitHub repository bfabiszewski/libmobi prior to 0.11. | |||
| CVE-2022-29788 | 0.00 | — | 0.01 | Jun 2, 2022 | libmobi before v0.10 contains a NULL pointer dereference via the component mobi_buffer_getpointer. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted mobi file. | |||
| CVE-2022-1908 | 0.00 | — | 0.01 | May 27, 2022 | Buffer Over-read in GitHub repository bfabiszewski/libmobi prior to 0.11. | |||
| CVE-2022-1907 | 0.00 | — | 0.01 | May 27, 2022 | Buffer Over-read in GitHub repository bfabiszewski/libmobi prior to 0.11. | |||
| CVE-2022-1533 | 0.00 | — | 0.00 | Apr 29, 2022 | Buffer Over-read in GitHub repository bfabiszewski/libmobi prior to 0.11. This vulnerability is capable of arbitrary code execution. | |||
| CVE-2022-1534 | 0.00 | — | 0.00 | Apr 29, 2022 | Buffer Over-read at parse_rawml.c:1416 in GitHub repository bfabiszewski/libmobi prior to 0.11. The bug causes the program reads data past the end of the intented buffer. Typically, this can allow attackers to read sensitive information from other memory locations or cause a… | |||
| CVE-2021-3889 | 0.00 | — | 0.01 | Oct 19, 2021 | libmobi is vulnerable to Use of Out-of-range Pointer Offset | |||
| CVE-2021-3888 | 0.00 | — | 0.01 | Oct 19, 2021 | libmobi is vulnerable to Use of Out-of-range Pointer Offset | |||
| CVE-2021-3881 | 0.00 | — | 0.01 | Oct 15, 2021 | libmobi is vulnerable to Out-of-bounds Read |
- risk 0.57cvss 8.8epss 0.03
The mobi_decode_font_resource function in util.c in Libmobi 0.3 allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via a crafted mobi file.
- risk 0.57cvss 8.8epss 0.02
The mobi_pk1_decrypt function in encryption.c in Libmobi 0.3 allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via a crafted mobi file.
- risk 0.57cvss 8.8epss 0.03
The mobi_decompress_lz77 function in compression.c in Libmobi 0.3 allows remote attackers to cause remote code execution (heap-based buffer overflow) via a crafted mobi file.
- risk 0.42cvss 6.5epss 0.03
The mobi_parse_index_entry function in index.c in Libmobi 0.3 allows remote attackers to cause an information disclosure (heap-based buffer over-read) via a crafted mobi file.
- risk 0.42cvss 6.5epss 0.01
The mobi_reconstruct_parts function in parse_rawml.c in Libmobi 0.3 allows remote attackers to cause information disclosure (read access violation) via a crafted mobi file.
- risk 0.42cvss 6.5epss 0.01
The buffer_addraw function in buffer.c in Libmobi 0.3 allows remote attackers to cause information disclosure (heap-based buffer over-read) via a crafted mobi file.
- risk 0.42cvss 6.5epss 0.01
The mobi_decompress_huffman_internal function in compression.c in Libmobi 0.3 allows remote attackers to cause information disclosure (read access violation) via a crafted mobi file.
- risk 0.42cvss 6.5epss 0.01
The buffer_fill64 function in compression.c in Libmobi 0.3 allows remote attackers to cause information disclosure (heap-based buffer over-read) via a crafted mobi file.
- risk 0.42cvss 6.5epss 0.01
The mobi_get_kf8boundary_seqnumber function in util.c in Libmobi 0.3 allows remote attackers to cause information disclosure (heap-based buffer over-read) via a crafted mobi file.
- risk 0.42cvss 6.5epss 0.01
The mobi_parse_mobiheader function in read.c in Libmobi 0.3 allows remote attackers to cause information disclosure (heap-based buffer over-read) via a crafted mobi file.
- CVE-2022-2279Jul 1, 2022risk 0.00cvss —epss 0.01
NULL Pointer Dereference in GitHub repository bfabiszewski/libmobi prior to 0.11.
- CVE-2022-1987Jun 3, 2022risk 0.00cvss —epss 0.01
Buffer Over-read in GitHub repository bfabiszewski/libmobi prior to 0.11.
- CVE-2022-29788Jun 2, 2022risk 0.00cvss —epss 0.01
libmobi before v0.10 contains a NULL pointer dereference via the component mobi_buffer_getpointer. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted mobi file.
- CVE-2022-1908May 27, 2022risk 0.00cvss —epss 0.01
Buffer Over-read in GitHub repository bfabiszewski/libmobi prior to 0.11.
- CVE-2022-1907May 27, 2022risk 0.00cvss —epss 0.01
Buffer Over-read in GitHub repository bfabiszewski/libmobi prior to 0.11.
- CVE-2022-1533Apr 29, 2022risk 0.00cvss —epss 0.00
Buffer Over-read in GitHub repository bfabiszewski/libmobi prior to 0.11. This vulnerability is capable of arbitrary code execution.
- CVE-2022-1534Apr 29, 2022risk 0.00cvss —epss 0.00
Buffer Over-read at parse_rawml.c:1416 in GitHub repository bfabiszewski/libmobi prior to 0.11. The bug causes the program reads data past the end of the intented buffer. Typically, this can allow attackers to read sensitive information from other memory locations or cause a…
- CVE-2021-3889Oct 19, 2021risk 0.00cvss —epss 0.01
libmobi is vulnerable to Use of Out-of-range Pointer Offset
- CVE-2021-3888Oct 19, 2021risk 0.00cvss —epss 0.01
libmobi is vulnerable to Use of Out-of-range Pointer Offset
- CVE-2021-3881Oct 15, 2021risk 0.00cvss —epss 0.01
libmobi is vulnerable to Out-of-bounds Read