Search CVE reports


Toggle filters

1 – 9 of 9 results


CVE-2022-29788

Medium priority

Some fixes available 1 of 7

libmobi before v0.10 contains a NULL pointer dereference via the component mobi_buffer_getpointer. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted mobi file.

1 affected package

libmobi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libmobi Needs evaluation Fixed
Show less packages

CVE-2022-2279

Medium priority
Vulnerable

NULL Pointer Dereference in GitHub repository bfabiszewski/libmobi prior to 0.11.

1 affected package

libmobi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libmobi Not affected Vulnerable Not in release Not in release
Show less packages

CVE-2022-1987

Medium priority
Needs evaluation

Buffer Over-read in GitHub repository bfabiszewski/libmobi prior to 0.11.

1 affected package

libmobi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libmobi Not affected Needs evaluation
Show less packages

CVE-2022-1908

Low priority

Some fixes available 1 of 7

Buffer Over-read in GitHub repository bfabiszewski/libmobi prior to 0.11.

1 affected package

libmobi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libmobi Needs evaluation Fixed
Show less packages

CVE-2022-1907

Low priority

Some fixes available 1 of 7

Buffer Over-read in GitHub repository bfabiszewski/libmobi prior to 0.11.

1 affected package

libmobi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libmobi Needs evaluation Fixed
Show less packages

CVE-2022-1534

Medium priority
Needs evaluation

Buffer Over-read at parse_rawml.c:1416 in GitHub repository bfabiszewski/libmobi prior to 0.11. The bug causes the program reads data past the end of the intented buffer. Typically, this can allow attackers to read sensitive...

1 affected package

libmobi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libmobi Not affected Needs evaluation
Show less packages

CVE-2022-1533

Medium priority
Needs evaluation

Buffer Over-read in GitHub repository bfabiszewski/libmobi prior to 0.11. This vulnerability is capable of arbitrary code execution.

1 affected package

libmobi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libmobi Not affected Needs evaluation
Show less packages

CVE-2018-11435

Medium priority
Needs evaluation

The mobi_decompress_huffman_internal function in compression.c in Libmobi 0.3 allows remote attackers to cause information disclosure (read access violation) via a crafted mobi file.

1 affected package

libmobi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libmobi Needs evaluation Needs evaluation
Show less packages

CVE-2018-11432

Medium priority
Needs evaluation

The mobi_parse_mobiheader function in read.c in Libmobi 0.3 allows remote attackers to cause information disclosure (heap-based buffer over-read) via a crafted mobi file.

1 affected package

libmobi

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libmobi Needs evaluation Needs evaluation
Show less packages