#1123911 unrtf: CVE-2025-65410

Package:
src:unrtf
Source:
src:unrtf
Submitter:
Salvatore Bonaccorso
Date:
2025-12-23 21:13:03 UTC
Severity:
normal
Tags:
#1123911#5
Date:
2025-12-23 21:10:25 UTC
From:
To:
Hi,

The following vulnerability was published for unrtf.

CVE-2025-65410[0]:
| A stack overflow in the src/main.c component of GNU Unrtf v0.21.10
| allows attackers to cause a Denial of Service (DoS) via injecting a
| crafted input into the filename parameter.


If you fix the vulnerability please also make sure to include the
CVE (Common Vulnerabilities & Exposures) id in your changelog entry.

For further information see:

[0] https://security-tracker.debian.org/tracker/CVE-2025-65410
https://www.cve.org/CVERecord?id=CVE-2025-65410
[1] https://hg.savannah.gnu.org/hgweb/unrtf/rev/a5d3b025a8b1

Regards,
Salvatore