Show filters
54 Total Results
Displaying 21-30 of 54
Sort by:
Attacker Value
Unknown

CVE-2019-5088

Disclosure Date: November 05, 2019 (last updated November 27, 2024)
An exploitable memory corruption vulnerability exists in Investintech Able2Extract Professional 14.0.7 x64. A specially crafted BMP file can cause an out-of-bounds memory write, allowing a potential attacker to execute arbitrary code on the victim machine. Can trigger this vulnerability by sending the user a specially crafted BMP file.
Attacker Value
Unknown

CVE-2019-15531

Disclosure Date: August 23, 2019 (last updated November 08, 2023)
GNU Libextractor through 1.9 has a heap-based buffer over-read in the function EXTRACTOR_dvi_extract_method in plugins/dvi_extractor.c.
Attacker Value
Unknown

CVE-2019-14262

Disclosure Date: July 25, 2019 (last updated November 08, 2023)
MetadataExtractor 2.1.0 allows stack consumption.
0
Attacker Value
Unknown

CVE-2019-12739

Disclosure Date: June 05, 2019 (last updated November 27, 2024)
lib/Controller/ExtractionController.php in the Extract add-on before 1.2.0 for Nextcloud allows Remote Code Execution via shell metacharacters in a RAR filename via ajax/extractRar.php (nameOfFile and directory parameters).
0
Attacker Value
Unknown

CVE-2018-20431

Disclosure Date: December 24, 2018 (last updated November 27, 2024)
GNU Libextractor through 1.8 has a NULL Pointer Dereference vulnerability in the function process_metadata() in plugins/ole2_extractor.c.
0
Attacker Value
Unknown

CVE-2018-20430

Disclosure Date: December 24, 2018 (last updated November 27, 2024)
GNU Libextractor through 1.8 has an out-of-bounds read vulnerability in the function history_extract() in plugins/ole2_extractor.c, related to EXTRACTOR_common_convert_to_utf8 in common/convert.c.
0
Attacker Value
Unknown

CVE-2018-18584

Disclosure Date: October 23, 2018 (last updated November 27, 2024)
In mspack/cab.h in libmspack before 0.8alpha and cabextract before 1.8, the CAB block input buffer is one byte too small for the maximal Quantum block, leading to an out-of-bounds write.
Attacker Value
Unknown

CVE-2018-16430

Disclosure Date: September 04, 2018 (last updated November 27, 2024)
GNU Libextractor through 1.7 has an out-of-bounds read vulnerability in EXTRACTOR_zip_extract_method() in zip_extractor.c.
0
Attacker Value
Unknown

CVE-2018-14679

Disclosure Date: July 28, 2018 (last updated November 27, 2024)
An issue was discovered in mspack/chmd.c in libmspack before 0.7alpha. There is an off-by-one error in the CHM PMGI/PMGL chunk number validity checks, which could lead to denial of service (uninitialized data dereference and application crash).
0
Attacker Value
Unknown

CVE-2018-14682

Disclosure Date: July 28, 2018 (last updated November 27, 2024)
An issue was discovered in mspack/chmd.c in libmspack before 0.7alpha. There is an off-by-one error in the TOLOWER() macro for CHM decompression.
0