Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Voiddy-Devo

#19638of 53,630
13.3Total CVSS
Vulnerabilities · 2
Medium
1
High
1
PT-2022-16532
5.5
2022-04-04
Htmldoc · Htmldoc · CVE-2022-24191
**Name of the Vulnerable Software and Affected Versions** HTMLDOC version 1.9.14 **Description** The issue is caused by an infinite loop in the `gif read lzw` function, which can lead to a pointer arbitrarily pointing to heap memory, resulting in a buffer overflow. **Recommendations** For HTMLDOC version 1.9.14, consider disabling the `gif read lzw` function as a temporary workaround until a patch is available.
PT-2021-23884
7.8
2021-11-12
Htmldoc · Htmldoc · CVE-2021-43579
**Name of the Vulnerable Software and Affected Versions** HTMLDOC versions prior to 1.9.14 **Description** A stack-based buffer overflow in the `image load bmp()` function results in remote code execution if the victim converts an HTML document linking to a crafted BMP file. **Recommendations** For versions prior to 1.9.14, update to version 1.9.14 or later to resolve the issue.