In ytnef 1.9.3, the TNEFSubjectHandler function in lib/ytnef.c allows remote attackers to cause a denial-of-service (and potentially code execution) due to a double free which can be triggered via a crafted file.
{ "binaries": [ { "binary_version": "1.5-9ubuntu0.1", "binary_name": "libytnef0" }, { "binary_version": "1.5-9ubuntu0.1", "binary_name": "libytnef0-dev" } ] }
{ "binaries": [ { "binary_version": "1.9.2-2", "binary_name": "libytnef0" }, { "binary_version": "1.9.2-2", "binary_name": "libytnef0-dev" }, { "binary_version": "1.9.2-2", "binary_name": "ytnef-tools" } ] }
{ "binaries": [ { "binary_version": "1.9.3-1", "binary_name": "libytnef0" }, { "binary_version": "1.9.3-1", "binary_name": "libytnef0-dev" }, { "binary_version": "1.9.3-1", "binary_name": "ytnef-tools" } ] }
{ "binaries": [ { "binary_version": "2.0-1", "binary_name": "libytnef0" }, { "binary_version": "2.0-1", "binary_name": "libytnef0-dev" }, { "binary_version": "2.0-1", "binary_name": "ytnef-tools" } ] }
{ "binaries": [ { "binary_version": "2.1.2-1build1", "binary_name": "libytnef0" }, { "binary_version": "2.1.2-1build1", "binary_name": "libytnef0-dev" }, { "binary_version": "2.1.2-1build1", "binary_name": "ytnef-tools" } ] }