Kyzer libmspack 0.7 Alpha

CPE Details

Kyzer libmspack 0.7 Alpha
0.7
2019-01-29
11h57 +00:00
2019-01-29
11h57 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:kyzer:libmspack:0.7:alpha:*:*:*:*:*:*

Informations

Vendor

kyzer

Product

libmspack

Version

0.7

Update

alpha

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2018-18586 2018-10-23 00h00 +00:00 chmextract.c in the chmextract sample program, as distributed with libmspack before 0.8alpha, does not protect against absolute/relative pathnames in CHM files, leading to Directory Traversal. NOTE: the vendor disputes that this is a libmspack vulnerability, because chmextract.c was only intended as a source-code example, not a supported application
5.3
Medium
CVE-2018-18585 2018-10-22 22h00 +00:00 chmd_read_headers in mspack/chmd.c in libmspack before 0.8alpha accepts a filename that has '\0' as its first or second character (such as the "/\0" name).
4.3
Medium