Catdoc
This hub aggregates every CVE we track for Catdoc, a product in the devtools ci space. Use it to gauge the current risk picture and drill into individual advisories.
7
CVEs tracked
0
Critical
5
High
0
In CISA KEV
Severity distribution
HIGH5LOW1MEDIUM1
Monthly trend
0
0
0
0
0
0
0
0
0
0
2
0
0
0
0
0
0
0
0
0
0
0
0
0
2024-082026-07
Latest CVEs
The 7 most recently published vulnerabilities affecting Catdoc.
- CVE-2024-52035An integer overflow vulnerability exists in the OLE Document File Allocation Table Parser functionality of catdoc 0.95. A specially crafted malformed file can lead to heap-based memory corruption. ...8.4
- CVE-2024-54028An integer underflow vulnerability exists in the OLE Document DIFAT Parser functionality of catdoc 0.95. A specially crafted malformed file can lead to heap-based memory corruption. An attacker can...8.4
- CVE-2023-46345Catdoc v0.95 was discovered to contain a NULL pointer dereference via the component xls2csv at src/xlsparse.c.7.5
- CVE-2023-41633Catdoc v0.95 was discovered to contain a NULL pointer dereference via the component xls2csv at src/fileutil.c.5.5
- CVE-2023-31979Catdoc v0.95 was discovered to contain a global buffer overflow via the function process_file at /src/reader.c.7.8
- CVE-2017-11110The ole_init function in ole.c in catdoc 0.95 allows remote attackers to cause a denial of service (heap-based buffer underflow and application crash) or possibly have unspecified other impact via ...7.8
- CVE-2003-0193msxlsview.sh in xlsview for catdoc 0.91 and earlier allows local users to overwrite arbitrary files via a symlink attack on predictable temporary file names ("word$$.html").2.1
Product normalization is registry-driven with AI assist and human review. How it works