Vulnerability Bulletins

DSA-3846 libytnef - security update

   
Affected software Debian
 
Several issues were discovered in libytnef, a library used to decodeapplication/ms-tnef e-mail attachments. Multiple heap overflows,out-of-bound writes and reads, NULL pointer dereferences and infiniteloops could be exploited by tricking a user into opening a maliciouslycrafted winmail.dat file.

More info:

https://www.debian.org/security/2017/dsa-3846