CVE-2017-12144: Medium severity Ytnef Project Ytnef vulnerability
Published Aug 2, 2017
·Updated
In ytnef 1.9.2, an allocation failure was found in the function TNEFFillMapi in ytnef.c, which allows attackers to cause a denial of service via a crafted file.
Affected Software
1 affected component
Ytnef Project Ytnef=1.9.2
Event History
Aug 2, 2017
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-12144?
CVE-2017-12144 has a severity rating classified as a denial of service vulnerability.
2
How does CVE-2017-12144 affect ytnef 1.9.2?
CVE-2017-12144 allows attackers to cause a denial of service by exploiting an allocation failure in ytnef 1.9.2.
3
What versions of ytnef are affected by CVE-2017-12144?
CVE-2017-12144 specifically affects ytnef version 1.9.2.
4
How do I fix CVE-2017-12144?
To fix CVE-2017-12144, you should upgrade to a version of ytnef later than 1.9.2 that addresses this vulnerability.
5
Are there any known exploits for CVE-2017-12144?
As of now, there are no publicly disclosed exploits for CVE-2017-12144, but the vulnerability poses a risk of denial of service.