Sploitus

CVE-2014-9732

No indexed exploits for CVE-2014-9732 yet

The cabd_extract function in cabd.c in libmspack before 0.5 does not properly maintain decompression callbacks in certain cases where an invalid file follows a valid file, which allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted CAB archive.

Affected products
Alt Linux, Suse, Libmspack
Libmspack Project Libmspack
≤ 0.4-3
Fix
Available
CVSS 2.0
4.3 MEDIUM
EPSS
7.2% (94th percentile)
NVD status
Modified
Published
2015-06-11
CVE-2014-9732 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2014-9732 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2014-9732 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.