CVE-2017-6309

HIGH7.8EPSS 0.44%
Published: 2/24/2017Modified: 4/28/2026
Also known as:DEBIAN-CVE-2017-6309

Description

An issue was discovered in tnef before 1.4.13. Two type confusions have been identified in the parse_file() function. These might lead to invalid read and write operations, controlled by an attacker.

Affected packages (1)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1HIGH7.8CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

References (1)