CVE-2014-9274

Severity CVSS v4.0:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
09/12/2014
Last modified:
12/04/2025

Description

UnRTF allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code as demonstrated by a file containing the string "{\cb-999999999".

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:unrtf_project:unrtf:*:*:*:*:*:*:*:* 0.21.6 (including)
cpe:2.3:o:fedoraproject:fedora:21:*:*:*:*:*:*:*
cpe:2.3:a:mageia_project:mageia:4:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*