ZeroHour

CVE-2018-14680

CVSS 3.0
6.5 medium
EPSS
4%p89
Published
()
Modified
Description

An issue was discovered in mspack/chmd.c in libmspack before 0.7alpha. It does not reject blank CHM filenames.

Vendors
cabextractcabextract projectcanonicaldebianredhat
Products
libmspack, cabextract, ubuntu linux, debian linux, ansible tower, enterprise linux desktop, enterprise linux server, enterprise linux workstation
Weakness
CWE-20
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.