Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2009-3721

Опубликовано: 26 мая 2021
Источник: nvd
CVSS3: 7.8
CVSS2: 6.8
EPSS Низкий

Описание

Multiple directory traversal and buffer overflow vulnerabilities were discovered in yTNEF, and in Evolution's TNEF parser that is derived from yTNEF. A crafted email could cause these applications to write data in arbitrary locations on the filesystem, crash, or potentially execute arbitrary code when decoding attachments.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:gnome:evolution:*:*:*:*:*:*:*:*
cpe:2.3:a:ytnef_project:ytnef:*:*:*:*:*:*:*:*

EPSS

Процентиль: 73%
0.00781
Низкий

7.8 High

CVSS3

6.8 Medium

CVSS2

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 4 лет назад

Multiple directory traversal and buffer overflow vulnerabilities were discovered in yTNEF, and in Evolution's TNEF parser that is derived from yTNEF. A crafted email could cause these applications to write data in arbitrary locations on the filesystem, crash, or potentially execute arbitrary code when decoding attachments.

redhat
больше 16 лет назад

Multiple directory traversal and buffer overflow vulnerabilities were discovered in yTNEF, and in Evolution's TNEF parser that is derived from yTNEF. A crafted email could cause these applications to write data in arbitrary locations on the filesystem, crash, or potentially execute arbitrary code when decoding attachments.

CVSS3: 7.8
debian
больше 4 лет назад

Multiple directory traversal and buffer overflow vulnerabilities were ...

github
больше 3 лет назад

Multiple directory traversal and buffer overflow vulnerabilities were discovered in yTNEF, and in Evolution's TNEF parser that is derived from yTNEF. A crafted email could cause these applications to write data in arbitrary locations on the filesystem, crash, or potentially execute arbitrary code when decoding attachments.

EPSS

Процентиль: 73%
0.00781
Низкий

7.8 High

CVSS3

6.8 Medium

CVSS2

Дефекты

CWE-22