Kyzer libmspack 0.4 Alpha

CPE Details

Kyzer libmspack 0.4 Alpha
0.4
2019-01-29
11h57 +00:00
2019-01-29
11h57 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:kyzer:libmspack:0.4:alpha:*:*:*:*:*:*

Informations

Vendor

kyzer

Product

libmspack

Version

0.4

Update

alpha

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2018-18586 2018-10-23 00h00 +00:00 chmextract.c in the chmextract sample program, as distributed with libmspack before 0.8alpha, does not protect against absolute/relative pathnames in CHM files, leading to Directory Traversal. NOTE: the vendor disputes that this is a libmspack vulnerability, because chmextract.c was only intended as a source-code example, not a supported application
5.3
Moyen
CVE-2018-18585 2018-10-22 22h00 +00:00 chmd_read_headers in mspack/chmd.c in libmspack before 0.8alpha accepts a filename that has '\0' as its first or second character (such as the "/\0" name).
4.3
Moyen