An integer underflow has been identified in the unicode_to_utf8() function in tnef 1.4.14. This might lead to invalid write operations, controlled by an attacker. Upstream bug: https://github.com/verdammelt/tnef/issues/23
Created tnef tracking bugs for this issue: Affects: epel-all [bug 1451259] Affects: fedora-all [bug 1451258]
If all the tracking bugs have been closed, shouldn't this bug report be closed too?
In reply to comment #2: > If all the tracking bugs have been closed, shouldn't this bug report be > closed too? Yes, I'll close it, thanks for notice.