Catdoc
Fossies · 6 CVEs
An integer overflow vulnerability exists in the OLE Document File Allocation Table Parser functionality of catdoc 0.95.…
Jun 2, 2025
An integer underflow vulnerability exists in the OLE Document DIFAT Parser functionality of catdoc 0.95. A specially cr…
Jun 2, 2025
Catdoc v0.95 was discovered to contain a NULL pointer dereference via the component xls2csv at src/xlsparse.c.
Oct 25, 2023
Catdoc v0.95 was discovered to contain a NULL pointer dereference via the component xls2csv at src/fileutil.c.
Sep 1, 2023
Catdoc v0.95 was discovered to contain a global buffer overflow via the function process_file at /src/reader.c.
May 9, 2023
The ole_init function in ole.c in catdoc 0.95 allows remote attackers to cause a denial of service (heap-based buffer u…
Jul 8, 2017
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2024-52035 | An integer overflow vulnerability exists in the OLE Document File Allocation Table Parser functionality of catdoc 0.95. A specially crafted malformed file can… | HIGH | 0.31% | Jun 2, 2025 |
| CVE-2024-54028 | An integer underflow vulnerability exists in the OLE Document DIFAT Parser functionality of catdoc 0.95. A specially crafted malformed file can lead to heap-ba… | HIGH | 0.31% | Jun 2, 2025 |
| CVE-2023-46345 | Catdoc v0.95 was discovered to contain a NULL pointer dereference via the component xls2csv at src/xlsparse.c. | HIGH | 0.58% | Oct 25, 2023 |
| CVE-2023-41633 | Catdoc v0.95 was discovered to contain a NULL pointer dereference via the component xls2csv at src/fileutil.c. | MEDIUM | 0.22% | Sep 1, 2023 |
| CVE-2023-31979 | Catdoc v0.95 was discovered to contain a global buffer overflow via the function process_file at /src/reader.c. | HIGH | 0.28% | May 9, 2023 |
| CVE-2017-11110 | The ole_init function in ole.c in catdoc 0.95 allows remote attackers to cause a denial of service (heap-based buffer underflow and application crash) or possi… | HIGH | 1.23% | Jul 8, 2017 |
Showing 1 to 6 of 6 CVEs