An issue was discovered in mspack/chmd.c in libmspack before 0.7alpha. There is an off-by-one error in the CHM PMGI/PMGL chunk number validity checks, which could lead to denial of service (uninitialized data dereference and application crash).
                
            References
                    Configurations
                    Configuration 1 (hide)
| 
 | 
Configuration 2 (hide)
| 
 | 
Configuration 3 (hide)
| 
 | 
Configuration 4 (hide)
| 
 | 
History
                    No history.
Information
                Published : 2018-07-28 23:29
Updated : 2024-11-21 03:49
NVD link : CVE-2018-14679
Mitre link : CVE-2018-14679
CVE.ORG link : CVE-2018-14679
JSON object : View
Products Affected
                cabextract
- libmspack
redhat
- ansible_tower
- enterprise_linux_server
- enterprise_linux_desktop
- enterprise_linux_workstation
canonical
- ubuntu_linux
cabextract_project
- cabextract
debian
- debian_linux
CWE
                
                    
                        
                        CWE-193
                        
            Off-by-one Error
