Security Advisory

CVE-2021-3403

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-03-04 21:10:50
Last updated 2024-08-03 16:53:17
Assigner redhat
State PUBLISHED

Description

In ytnef 1.9.3, the TNEFSubjectHandler function in lib/ytnef.c allows remote attackers to cause a denial-of-service (and potentially code execution) due to a double free which can be triggered via a crafted file.