The mobiparsemobiheader function in read.c in Libmobi 0.3 allows remote attackers to cause information disclosure (heap-based buffer over-read) via a crafted mobi file.
{ "binaries": [ { "binary_name": "libmobi-dev", "binary_version": "0.9+dfsg1-1" }, { "binary_name": "libmobi-tools", "binary_version": "0.9+dfsg1-1" }, { "binary_name": "libmobi0", "binary_version": "0.9+dfsg1-1" } ] }
{ "binaries": [ { "binary_name": "libmobi-dev", "binary_version": "0.11+dfsg-1.1build1" }, { "binary_name": "libmobi-tools", "binary_version": "0.11+dfsg-1.1build1" }, { "binary_name": "libmobi0t64", "binary_version": "0.11+dfsg-1.1build1" } ] }
{ "binaries": [ { "binary_name": "libmobi-dev", "binary_version": "0.12+dfsg-1build1" }, { "binary_name": "libmobi-tools", "binary_version": "0.12+dfsg-1build1" }, { "binary_name": "libmobi0t64", "binary_version": "0.12+dfsg-1build1" } ] }
{ "binaries": [ { "binary_name": "libmobi-dev", "binary_version": "0.12+dfsg-1" }, { "binary_name": "libmobi-tools", "binary_version": "0.12+dfsg-1" }, { "binary_name": "libmobi0t64", "binary_version": "0.12+dfsg-1" } ] }