First published: Thu May 31 2018(Updated: )
It was discovered that libytnef incorrectly handled certain files. An attacker could possibly use this to cause a denial of service. (CVE-2017-12141, CVE-2017-9146, CVE-2017-9471, CVE-2017-9473) It was discovered that libytnef incorrectly handled certain files. An attacker could possibly use this to access sensitive information. (CVE-2017-9058)
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/libytnef0 | <1.5-6ubuntu0.2 | 1.5-6ubuntu0.2 |
Ubuntu | =14.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Contains the following vulnerabilities)
The severity of USN-3667-1 is classified as a denial of service vulnerability.
To fix USN-3667-1, update the libytnef0 package to version 1.5-6ubuntu0.2 or later.
USN-3667-1 affects Ubuntu 14.04 with libytnef0 versions prior to 1.5-6ubuntu0.2.
USN-3667-1 is caused by libytnef incorrectly handling certain file types.
While USN-3667-1 primarily leads to denial of service, it could potentially expose the system to further risks depending on the attacker's intent.