First published: Tue Dec 09 2014(Updated: )
UnRTF allows remote attackers to cause a denial of service (out-of-bounds memory access and crash) and possibly execute arbitrary code via a crafted RTF file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
UnRTF | <=0.21.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-9275 has a severity rating that indicates it can lead to denial of service and potentially allow remote code execution.
To fix CVE-2014-9275, upgrade to UnRTF version 0.21.7 or later, which addresses this vulnerability.
CVE-2014-9275 can be exploited by remote attackers through crafted RTF files to cause crashes or execute arbitrary code.
Versions of UnRTF up to and including 0.21.6 are affected by CVE-2014-9275.
CVE-2014-9275 is a remote vulnerability that allows attackers to exploit the flaw without local access.