Search CVE reports


Toggle filters

21 – 26 of 26 results


CVE-2021-43579

Medium priority

Some fixes available 4 of 7

A stack-based buffer overflow in image_load_bmp() in HTMLDOC <= 1.9.13 results in remote code execution if the victim converts an HTML document linking to a crafted BMP file.

1 affected package

htmldoc

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
htmldoc Not affected Not affected Fixed Fixed
Show less packages

CVE-2021-40985

Medium priority

Some fixes available 4 of 9

A stack-based buffer under-read in htmldoc before 1.9.12, allows attackers to cause a denial of service via a crafted BMP image to image_load_bmp.

1 affected package

htmldoc

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
htmldoc Not affected Not affected Fixed Fixed
Show less packages

CVE-2021-23180

Medium priority

Some fixes available 2 of 5

A flaw was found in htmldoc in v1.9.12 and before. Null pointer dereference in file_extension(),in file.c may lead to execute arbitrary code and denial of service.

1 affected package

htmldoc

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
htmldoc Not affected Not affected Fixed Not affected
Show less packages

CVE-2021-20308

Medium priority

Some fixes available 4 of 10

Integer overflow in the htmldoc 1.9.11 and before may allow attackers to execute arbitrary code and cause a denial of service that is similar to CVE-2017-9181.

1 affected package

htmldoc

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
htmldoc Not affected Not affected Fixed Fixed
Show less packages

CVE-2019-19630

Medium priority

Some fixes available 3 of 5

HTMLDOC 1.9.7 allows a stack-based buffer overflow in the hd_strlcpy() function in string.c (when called from render_contents in ps-pdf.cxx) via a crafted HTML document.

1 affected package

htmldoc

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
htmldoc Not affected Fixed
Show less packages

CVE-2009-3050

Low priority
Ignored

Buffer overflow in the set_page_size function in util.cxx in HTMLDOC 1.8.27 and earlier allows context-dependent attackers to execute arbitrary code via a long MEDIA SIZE comment. NOTE: it was later reported that there...

1 affected package

htmldoc

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
htmldoc
Show less packages