Required CVE Record Information
Description
An integer underflow has been identified in the unicode_to_utf8() function in tnef 1.4.14. This might lead to invalid write operations, controlled by an attacker.
References 3 Total
- https://github.com/verdammelt/tnef/issues/23
- debian.org: DSA-3869 vendor-advisory
- security.gentoo.org: GLSA-201708-02 vendor-advisory
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 3 Total
- https://github.com/verdammelt/tnef/issues/23 x_transferred
- debian.org: DSA-3869 vendor-advisoryx_transferred
- security.gentoo.org: GLSA-201708-02 vendor-advisoryx_transferred