AVG-1552 log
| Package | libytnef |
| Status | Fixed |
| Severity | Medium |
| Type | arbitrary code execution |
| Affected | 1.9.3+7+g24fe30e-2 |
| Fixed | 1:1.9.3-1 |
| Current | 1:2.1.2-2 [extra] |
| Ticket | FS#70056 |
| Created | Tue Feb 9 18:46:30 2021 |
| Issue | Severity | Remote | Type | Description |
|---|---|---|---|---|
| CVE-2021-3404 | Medium | No | Arbitrary code execution | In ytnef 1.9.3, the SwapWord function in lib/ytnef.c allows remote attackers to cause a denial-of-service (and potentially code execution) due to a heap... |
| CVE-2021-3403 | Medium | No | Arbitrary code execution | In ytnef 1.9.3, the TNEFSubjectHandler function in lib/ytnef.c allows remote attackers to cause a denial-of-service (and potentially code execution) due to... |