FreshPorts - VuXML

This page displays vulnerability information about FreeBSD Ports.

The VUXML data was last processed by FreshPorts on 2024-04-24 21:00:48 UTC

List all Vulnerabilities, by package

List all Vulnerabilities, by date

k68

These are the vulnerabilities relating to the commit you have selected:

VuXML IDDescription
3df5a920-6edc-11e9-a44b-0050562a4d7bcomms/hylafax -- Malformed fax sender remote code execution in JPEG support

A malicious sender that sets both JPEG and MH,MR,MMR or JBIG in the same DCS signal or sends a large JPEG page could lead to remote code execution.


Discovery 2018-08-24
Entry 2019-05-05
hylafax
< 6.0.7

CVE-2018-17141
ftp://ftp.hylafax.org/security/CVE-2018-17141.html
https://www.x41-dsec.de/lab/advisories/x41-2018-008-hylafax/
http://bugs.hylafax.org/show_bug.cgi?id=974
http://git.hylafax.org/HylaFAX?a=commit;h=c6cac8d8cd0dbe313689ba77023e12bc5b3027be