An Out of Bounds flaw was discovered in htmodoc 1.9.12 in function parse_tree() in toc.cxx, this possibly leads to memory layout information leaking in the data. This might be used in a chain of vulnerability in order to reach code execution.
{ "binaries": [ { "binary_name": "htmldoc", "binary_version": "1.8.27-8ubuntu1+esm3" }, { "binary_name": "htmldoc-common", "binary_version": "1.8.27-8ubuntu1+esm3" }, { "binary_name": "htmldoc-dbgsym", "binary_version": "1.8.27-8ubuntu1+esm3" } ], "priority_reason": "No real security impact as this is a command-line utility that is not generally expected to handle untrusted input.", "availability": "Available with Ubuntu Pro with Legacy support add-on: https://ubuntu.com/pro" }
{ "binaries": [ { "binary_name": "htmldoc", "binary_version": "1.8.27-8ubuntu1.1+esm2" }, { "binary_name": "htmldoc-common", "binary_version": "1.8.27-8ubuntu1.1+esm2" }, { "binary_name": "htmldoc-dbgsym", "binary_version": "1.8.27-8ubuntu1.1+esm2" } ], "priority_reason": "No real security impact as this is a command-line utility that is not generally expected to handle untrusted input.", "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro" }
{ "binaries": [ { "binary_name": "htmldoc", "binary_version": "1.9.2-1ubuntu0.2+esm1" }, { "binary_name": "htmldoc-common", "binary_version": "1.9.2-1ubuntu0.2+esm1" } ], "priority_reason": "No real security impact as this is a command-line utility that is not generally expected to handle untrusted input.", "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro" }
{ "binaries": [ { "binary_name": "htmldoc", "binary_version": "1.9.7-1ubuntu0.3+esm1" }, { "binary_name": "htmldoc-common", "binary_version": "1.9.7-1ubuntu0.3+esm1" } ], "priority_reason": "No real security impact as this is a command-line utility that is not generally expected to handle untrusted input.", "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro" }