Vulnerabilities > Libmobi Project > Libmobi > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-07-01 CVE-2022-2279 NULL Pointer Dereference vulnerability in Libmobi Project Libmobi
NULL Pointer Dereference in GitHub repository bfabiszewski/libmobi prior to 0.11.
4.3
2022-06-03 CVE-2022-1987 Out-of-bounds Read vulnerability in Libmobi Project Libmobi
Buffer Over-read in GitHub repository bfabiszewski/libmobi prior to 0.11.
5.8
2022-06-02 CVE-2022-29788 NULL Pointer Dereference vulnerability in Libmobi Project Libmobi
libmobi before v0.10 contains a NULL pointer dereference via the component mobi_buffer_getpointer.
4.3
2022-05-27 CVE-2022-1907 Out-of-bounds Read vulnerability in Libmobi Project Libmobi
Buffer Over-read in GitHub repository bfabiszewski/libmobi prior to 0.11.
5.8
2022-05-27 CVE-2022-1908 Out-of-bounds Read vulnerability in Libmobi Project Libmobi
Buffer Over-read in GitHub repository bfabiszewski/libmobi prior to 0.11.
5.8
2022-04-29 CVE-2022-1533 Out-of-bounds Read vulnerability in Libmobi Project Libmobi
Buffer Over-read in GitHub repository bfabiszewski/libmobi prior to 0.11.
local
low complexity
libmobi-project CWE-125
4.6
2021-10-19 CVE-2021-3888 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Libmobi Project Libmobi
libmobi is vulnerable to Use of Out-of-range Pointer Offset
5.8
2021-10-19 CVE-2021-3889 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Libmobi Project Libmobi
libmobi is vulnerable to Use of Out-of-range Pointer Offset
5.8
2018-06-19 CVE-2018-11726 Out-of-bounds Write vulnerability in Libmobi Project Libmobi 0.3
The mobi_decode_font_resource function in util.c in Libmobi 0.3 allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via a crafted mobi file.
6.8
2018-06-19 CVE-2018-11725 Out-of-bounds Read vulnerability in Libmobi Project Libmobi 0.3
The mobi_parse_index_entry function in index.c in Libmobi 0.3 allows remote attackers to cause an information disclosure (heap-based buffer over-read) via a crafted mobi file.
4.3