Vulnerabilities > CVE-2022-23850 - Out-of-bounds Write vulnerability in Epub2Txt Project Epub2Txt

047910
CVSS 7.8 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
local
low complexity
epub2txt-project
CWE-787

Summary

xhtml_translate_entity in xhtml.c in epub2txt (aka epub2txt2) through 2.02 allows a stack-based buffer overflow via a crafted EPUB document.

Common Weakness Enumeration (CWE)