Cabextract Project

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 9
    Known Exploited: 0
    0
    Critical Level Threats
    2
    High Level Threats
    7
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2015-2060

    cabextract before 1.6 does not properly check for leading slashes when extracting files, which allows remote attackers to conduct absolute directory traversal attacks via a malformed UTF-8 character that is changed to a UTF-8 encoded slash.

    Last Modified: Nov 21, 2024
    Published: Nov 29, 2019

    CVE-2018-18584

    libmspack: Out-of-bounds write in mspack/cab.h

    Last Modified: Nov 21, 2024
    Published: Oct 17, 2018

    CVE-2018-14680

    libmspack: off-by-one error in the CHM chunk number validity checks

    Last Modified: Nov 21, 2024
    Published: May 12, 2018

    CVE-2018-14679

    libmspack: off-by-one error in the CHM PMGI/PMGL chunk number validity checks

    Last Modified: Nov 21, 2024
    Published: May 12, 2018

    CVE-2018-14682

    libmspack: off-by-one error in the TOLOWER() macro for CHM decompression

    Last Modified: Nov 21, 2024
    Published: Feb 06, 2018
    Items Per Page
    Cabextract_Project Vulnerabilities & Security CVEs | CVE-DB