A flaw was found in htmldoc before v1.9.12. Heap buffer overflow in pspdfprepareoutpages(), in ps-pdf.cxx may lead to execute arbitrary code and denial of service.
HTMLDoc v1.9.12 and below was discovered to contain a heap overflow via enode htmldoc/htmldoc/html.cxx:588.
A flaw was discovered in htmodoc 1.9.12 in function parseparagraph in ps-pdf.cxx ,this flaw possibly allows possible code execution and a denial of service via a crafted file.
An Out of Bounds flaw was discovered in htmodoc 1.9.12 in function parsetree() in toc.cxx, this possibly leads to memory layout information leaking in the data. This might be used in a chain of vulnerability in order to reach code execution.
A flaw was found in htmldoc in v1.9.12. Heap buffer overflow in pspdfpreparepage(),in ps-pdf.cxx may lead to execute arbitrary code and denial of service.
A flaw was found in htmldoc in v1.9.12 and prior. A stack buffer overflow in parsetable() in ps-pdf.cxx may lead to execute arbitrary code and denial of service.
A flaw was found in htmldoc in versions prior to 1.9.12. NULL pointer dereference in function imageloadjpeg(),in image.cxx may result in code execution and denial of service.
Reference: https://github.com/michaelrsweet/htmldoc/issues/415
Upstream patch: https://github.com/michaelrsweet/htmldoc/commit/369b2ea1fd0d0537ba707f20a2f047b6afd2fbdc
A flaw was found in htmldoc in v1.9.12. Heap buffer overflow in rendertablerow(),in ps-pdf.cxx may lead to arbitrary code execution and denial of service.
A flaw was found in htmldoc in v1.9.12 and before. Null pointer dereference in fileextension(),in file.c may lead to execute arbitrary code and denial of service.