Filtered by vendor Catdoc Project Subscriptions
Total 4 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2024-54028 2 Catdoc, Catdoc Project 2 Catdoc, Catdoc 2025-08-25 8.4 High
An integer underflow vulnerability exists in the OLE Document DIFAT Parser functionality of catdoc 0.95. A specially crafted malformed file can lead to heap-based memory corruption. An attacker can provide a malicious file to trigger this vulnerability.
CVE-2024-52035 2 Catdoc, Catdoc Project 2 Catdoc, Catdoc 2025-08-25 8.4 High
An integer overflow vulnerability exists in the OLE Document File Allocation Table Parser functionality of catdoc 0.95. A specially crafted malformed file can lead to heap-based memory corruption. An attacker can provide a malicious file to trigger this vulnerability.
CVE-2023-31979 1 Catdoc Project 1 Catdoc 2025-01-29 7.8 High
Catdoc v0.95 was discovered to contain a global buffer overflow via the function process_file at /src/reader.c.
CVE-2023-41633 1 Catdoc Project 1 Catdoc 2024-11-21 5.5 Medium
Catdoc v0.95 was discovered to contain a NULL pointer dereference via the component xls2csv at src/fileutil.c.