Show filters
9 Total Results
Displaying 1-9 of 9
Sort by:
Attacker Value
Unknown
CVE-2015-2060
Disclosure Date: November 29, 2019 (last updated November 27, 2024)
cabextract before 1.6 does not properly check for leading slashes when extracting files, which allows remote attackers to conduct absolute directory traversal attacks via a malformed UTF-8 character that is changed to a UTF-8 encoded slash.
0
Attacker Value
Unknown
CVE-2018-18584
Disclosure Date: October 23, 2018 (last updated November 27, 2024)
In mspack/cab.h in libmspack before 0.8alpha and cabextract before 1.8, the CAB block input buffer is one byte too small for the maximal Quantum block, leading to an out-of-bounds write.
0
Attacker Value
Unknown
CVE-2018-14679
Disclosure Date: July 28, 2018 (last updated November 27, 2024)
An issue was discovered in mspack/chmd.c in libmspack before 0.7alpha. There is an off-by-one error in the CHM PMGI/PMGL chunk number validity checks, which could lead to denial of service (uninitialized data dereference and application crash).
0
Attacker Value
Unknown
CVE-2018-14682
Disclosure Date: July 28, 2018 (last updated November 27, 2024)
An issue was discovered in mspack/chmd.c in libmspack before 0.7alpha. There is an off-by-one error in the TOLOWER() macro for CHM decompression.
0
Attacker Value
Unknown
CVE-2018-14680
Disclosure Date: July 28, 2018 (last updated November 27, 2024)
An issue was discovered in mspack/chmd.c in libmspack before 0.7alpha. It does not reject blank CHM filenames.
0
Attacker Value
Unknown
CVE-2018-14681
Disclosure Date: July 28, 2018 (last updated November 27, 2024)
An issue was discovered in kwajd_read_headers in mspack/kwajd.c in libmspack before 0.7alpha. Bad KWAJ file header extensions could cause a one or two byte overwrite.
0
Attacker Value
Unknown
CVE-2010-2801
Disclosure Date: August 09, 2010 (last updated October 04, 2023)
Integer signedness error in the Quantum decompressor in cabextract before 1.3, when archive test mode is used, allows user-assisted remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted Quantum archive in a .cab file, related to the libmspack library.
0
Attacker Value
Unknown
CVE-2010-2800
Disclosure Date: August 09, 2010 (last updated October 04, 2023)
The MS-ZIP decompressor in cabextract before 1.3 allows remote attackers to cause a denial of service (infinite loop) via a malformed MSZIP archive in a .cab file during a (1) test or (2) extract action, related to the libmspack library.
0
Attacker Value
Unknown
CVE-2004-0916
Disclosure Date: January 27, 2005 (last updated February 22, 2025)
Directory traversal vulnerability in cabextract before 1.1 allows remote attackers to overwrite arbitrary files via a cabinet file containing .. (dot dot) sequences in a filename.
0