Vulnerabilities > Htmldoc Project > Htmldoc

DATE CVE VULNERABILITY TITLE RISK
2022-03-02 CVE-2021-23180 NULL Pointer Dereference vulnerability in Htmldoc Project Htmldoc
A flaw was found in htmldoc in v1.9.12 and before.
local
low complexity
htmldoc-project CWE-476
7.8
2022-03-02 CVE-2021-23191 NULL Pointer Dereference vulnerability in Htmldoc Project Htmldoc
A security issue was found in htmldoc v1.9.12 and before.
6.8
2022-03-02 CVE-2021-23206 Out-of-bounds Write vulnerability in Htmldoc Project Htmldoc
A flaw was found in htmldoc in v1.9.12 and prior.
6.8
2022-02-24 CVE-2021-26252 Out-of-bounds Write vulnerability in multiple products
A flaw was found in htmldoc in v1.9.12.
7.8
2022-02-09 CVE-2022-0534 Out-of-bounds Read vulnerability in multiple products
A vulnerability was found in htmldoc version 1.9.15 where the stack out-of-bounds read takes place in gif_get_code() and occurs when opening a malicious GIF file, which can result in a crash (segmentation fault).
local
low complexity
htmldoc-project debian CWE-125
5.5
2022-01-10 CVE-2021-43579 Out-of-bounds Write vulnerability in multiple products
A stack-based buffer overflow in image_load_bmp() in HTMLDOC <= 1.9.13 results in remote code execution if the victim converts an HTML document linking to a crafted BMP file.
6.8
2021-11-03 CVE-2021-40985 Out-of-bounds Read vulnerability in multiple products
A stack-based buffer under-read in htmldoc before 1.9.12, allows attackers to cause a denial of service via a crafted BMP image to image_load_bmp.
local
low complexity
htmldoc-project debian CWE-125
5.5
2021-04-05 CVE-2021-20308 Integer Overflow or Wraparound vulnerability in multiple products
Integer overflow in the htmldoc 1.9.11 and before may allow attackers to execute arbitrary code and cause a denial of service that is similar to CVE-2017-9181.
network
low complexity
htmldoc-project debian CWE-190
7.5
2019-12-08 CVE-2019-19630 Out-of-bounds Write vulnerability in multiple products
HTMLDOC 1.9.7 allows a stack-based buffer overflow in the hd_strlcpy() function in string.c (when called from render_contents in ps-pdf.cxx) via a crafted HTML document.
7.8