Filtered by vendor Catdoc Project
Subscriptions
Filtered by product Catdoc
Subscriptions
Total
4 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2024-54028 | 2 Catdoc, Catdoc Project | 2 Catdoc, Catdoc | 2025-08-25 | 8.4 High |
An integer underflow vulnerability exists in the OLE Document DIFAT Parser functionality of catdoc 0.95. A specially crafted malformed file can lead to heap-based memory corruption. An attacker can provide a malicious file to trigger this vulnerability. | ||||
CVE-2024-52035 | 2 Catdoc, Catdoc Project | 2 Catdoc, Catdoc | 2025-08-25 | 8.4 High |
An integer overflow vulnerability exists in the OLE Document File Allocation Table Parser functionality of catdoc 0.95. A specially crafted malformed file can lead to heap-based memory corruption. An attacker can provide a malicious file to trigger this vulnerability. | ||||
CVE-2023-31979 | 1 Catdoc Project | 1 Catdoc | 2025-01-29 | 7.8 High |
Catdoc v0.95 was discovered to contain a global buffer overflow via the function process_file at /src/reader.c. | ||||
CVE-2023-41633 | 1 Catdoc Project | 1 Catdoc | 2024-11-21 | 5.5 Medium |
Catdoc v0.95 was discovered to contain a NULL pointer dereference via the component xls2csv at src/fileutil.c. |
Page 1 of 1.