Candidate: CVE-2014-9275 PublicDate: 2014-12-09 23:59:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-9275 https://lists.gnu.org/archive/html/bug-unrtf/2014-11/msg00000.html https://bugzilla.redhat.com/show_bug.cgi?id=1170233 Description: UnRTF allows remote attackers to cause a denial of service (out-of-bounds memory access and crash) and possibly execute arbitrary code via a crafted RTF file. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: Patches_unrtf: upstream_unrtf: released (0.21.5-2) lucid_unrtf: ignored (reached end-of-life) precise_unrtf: released (0.19.3-1.1+deb6u1build0.12.04.1) precise/esm_unrtf: DNE (precise was released [0.19.3-1.1+deb6u1build0.12.04.1]) trusty_unrtf: ignored (reached end-of-life) trusty/esm_unrtf: DNE (trusty was needed) utopic_unrtf: ignored (reached end-of-life) vivid_unrtf: not-affected (0.21.5-2) vivid/stable-phone-overlay_unrtf: DNE vivid/ubuntu-core_unrtf: DNE wily_unrtf: not-affected (0.21.5-2) xenial_unrtf: not-affected (0.21.5-2) yakkety_unrtf: not-affected (0.21.5-2) zesty_unrtf: not-affected (0.21.5-2) artful_unrtf: not-affected (0.21.5-2) bionic_unrtf: not-affected (0.21.5-2) cosmic_unrtf: not-affected (0.21.5-2) disco_unrtf: not-affected (0.21.5-2) devel_unrtf: not-affected (0.21.5-2)