CVE-2017-8911
published 2017-05-12CVE-2017-8911: An integer underflow has been identified in the unicode_to_utf8() function in tnef 1.4.14. This might lead to invalid write operations, controlled by an…
PriorityP340critical9.8CVSS 3.0
AVNACLPRNUINSUCHIHAH
EPSS
1.93%
78.0th percentile
An integer underflow has been identified in the unicode_to_utf8() function in tnef 1.4.14. This might lead to invalid write operations, controlled by an attacker.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | tnef | < tnef 1.4.12-1.2 (bookworm) | tnef 1.4.12-1.2 (bookworm) |
| tnef_project | tnef | — | — |
| tnef_project | tnef | >= 0 < 1.4.12-1.2 | 1.4.12-1.2 |
| tnef_project | tnef | >= 0 < 1.4.12-1.2 | 1.4.12-1.2 |
| tnef_project | tnef | >= 0 < 1.4.12-1.2 | 1.4.12-1.2 |
| tnef_project | tnef | >= 0 < 1.4.12-1.2 | 1.4.12-1.2 |
CVSS provenance
nvdv3.09.8CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv9.8CRITICAL
vendor_debian9.8CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-575j-8r4j-2fmq: An integer underflow has been identified in the unicode_to_utf8() function in tnef 1
ghsa_unreviewed·2022-05-17
CVE-2017-8911 [CRITICAL] CWE-191 GHSA-575j-8r4j-2fmq: An integer underflow has been identified in the unicode_to_utf8() function in tnef 1
An integer underflow has been identified in the unicode_to_utf8() function in tnef 1.4.14. This might lead to invalid write operations, controlled by an attacker.
OSV
CVE-2017-8911: An integer underflow has been identified in the unicode_to_utf8() function in tnef 1
osv·2017-05-12·CVSS 9.8
CVE-2017-8911 [CRITICAL] CVE-2017-8911: An integer underflow has been identified in the unicode_to_utf8() function in tnef 1
An integer underflow has been identified in the unicode_to_utf8() function in tnef 1.4.14. This might lead to invalid write operations, controlled by an attacker.
Debian
CVE-2017-8911: tnef - An integer underflow has been identified in the unicode_to_utf8() function in tn...
vendor_debian·2017·CVSS 9.8
CVE-2017-8911 [CRITICAL] CVE-2017-8911: tnef - An integer underflow has been identified in the unicode_to_utf8() function in tn...
An integer underflow has been identified in the unicode_to_utf8() function in tnef 1.4.14. This might lead to invalid write operations, controlled by an attacker.
Scope: local
bookworm: resolved (fixed in 1.4.12-1.2)
bullseye: resolved (fixed in 1.4.12-1.2)
forky: resolved (fixed in 1.4.12-1.2)
sid: resolved (fixed in 1.4.12-1.2)
trixie: resolved (fixed in 1.4.12-1.2)
Suricata
ET EXPLOIT Netgear passwordrecovered.cgi attempt
suricata·2014-01-15
CVE-2017-5521 ET EXPLOIT Netgear passwordrecovered.cgi attempt
ET EXPLOIT Netgear passwordrecovered.cgi attempt
Rule: alert http any any -> any any (msg:"ET EXPLOIT Netgear passwordrecovered.cgi attempt"; flow:established,to_server; http.method; content:"POST"; nocase; http.uri; content:"/passwordrecovered.cgi?id="; nocase; reference:url,www.securityfocus.com/archive/1/530743/30/0/threaded; reference:url,www.trustwave.com/Resources/Security-Advisories/Advisories/TWSL2017-003/?fid=8911; reference:cve,2017-5521; classtype:attempted-admin; sid:2017969; rev:6; metadata:created_at 2014_01_15, cve CVE_2017_5521, signature_severity Major, updated_at 2024_03_06;)
No public exploits indexed.
Bugzilla
CVE-2017-8911 tnef: Integer underflow in unicode_to_utf8
bugzilla·2017-05-16·CVSS 9.8
CVE-2017-8911 [CRITICAL] CVE-2017-8911 tnef: Integer underflow in unicode_to_utf8
CVE-2017-8911 tnef: Integer underflow in unicode_to_utf8
An integer underflow has been identified in the unicode_to_utf8() function in tnef 1.4.14. This might lead to invalid write operations, controlled by an attacker.
Upstream bug:
https://github.com/verdammelt/tnef/issues/23
Discussion:
Created tnef tracking bugs for this issue:
Affects: epel-all [bug 1451259]
Affects: fedora-all [bug 1451258]
---
If all the tracking bugs have been closed, shouldn't this bug report be closed too?
---
In reply to comment #2:
> If all the tracking bugs have been closed, shouldn't this bug report be
> closed too?
Yes, I'll close it, thanks for notice.
Bugzilla
CVE-2017-8911 tnef: Integer underflow in unicode_to_utf8 [fedora-all]
bugzilla·2017-05-16·CVSS 9.8
CVE-2017-8911 [CRITICAL] CVE-2017-8911 tnef: Integer underflow in unicode_to_utf8 [fedora-all]
CVE-2017-8911 tnef: Integer underflow in unicode_to_utf8 [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported versions of Fedo
Bugzilla
CVE-2017-8911 tnef: Integer underflow in unicode_to_utf8 [epel-all]
bugzilla·2017-05-16·CVSS 9.8
CVE-2017-8911 [CRITICAL] CVE-2017-8911 tnef: Integer underflow in unicode_to_utf8 [epel-all]
CVE-2017-8911 tnef: Integer underflow in unicode_to_utf8 [epel-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of epel-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported versions of Fedora E
2017-05-12
Published