Vulnerabilities (CVE)

Filtered by vendor Libmobi Project Subscribe
Filtered by product Libmobi
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-1987 1 Libmobi Project 1 Libmobi 2022-06-12 5.8 MEDIUM 8.1 HIGH
Buffer Over-read in GitHub repository bfabiszewski/libmobi prior to 0.11.
CVE-2022-1907 1 Libmobi Project 1 Libmobi 2022-06-03 5.8 MEDIUM 8.1 HIGH
Buffer Over-read in GitHub repository bfabiszewski/libmobi prior to 0.11.
CVE-2022-1908 1 Libmobi Project 1 Libmobi 2022-06-03 5.8 MEDIUM 8.1 HIGH
Buffer Over-read in GitHub repository bfabiszewski/libmobi prior to 0.11.
CVE-2022-1534 1 Libmobi Project 1 Libmobi 2022-05-11 3.6 LOW 7.1 HIGH
Buffer Over-read at parse_rawml.c:1416 in GitHub repository bfabiszewski/libmobi prior to 0.11. The bug causes the program reads data past the end of the intented buffer. Typically, this can allow attackers to read sensitive information from other memory locations or cause a crash.
CVE-2022-1533 1 Libmobi Project 1 Libmobi 2022-05-11 4.6 MEDIUM 7.8 HIGH
Buffer Over-read in GitHub repository bfabiszewski/libmobi prior to 0.11. This vulnerability is capable of arbitrary code execution.
CVE-2021-3888 1 Libmobi Project 1 Libmobi 2022-04-25 5.8 MEDIUM 8.1 HIGH
libmobi is vulnerable to Use of Out-of-range Pointer Offset
CVE-2021-3889 1 Libmobi Project 1 Libmobi 2021-10-25 5.8 MEDIUM 8.1 HIGH
libmobi is vulnerable to Use of Out-of-range Pointer Offset
CVE-2018-11438 1 Libmobi Project 1 Libmobi 2020-08-24 6.8 MEDIUM 8.8 HIGH
The mobi_decompress_lz77 function in compression.c in Libmobi 0.3 allows remote attackers to cause remote code execution (heap-based buffer overflow) via a crafted mobi file.
CVE-2018-11726 1 Libmobi Project 1 Libmobi 2020-08-24 6.8 MEDIUM 8.8 HIGH
The mobi_decode_font_resource function in util.c in Libmobi 0.3 allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via a crafted mobi file.
CVE-2018-11724 1 Libmobi Project 1 Libmobi 2019-10-03 6.8 MEDIUM 8.8 HIGH
The mobi_pk1_decrypt function in encryption.c in Libmobi 0.3 allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via a crafted mobi file.