Vulnerabilities (CVE)

Filtered by vendor Hylafax Subscribe
Filtered by product Hylafax\+
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-17141 2 Debian, Hylafax 3 Debian Linux, Hylafax, Hylafax\+ 2023-12-10 7.5 HIGH 9.8 CRITICAL
HylaFAX 6.0.6 and HylaFAX+ 5.6.0 allow remote attackers to execute arbitrary code via a dial-in session that provides a FAX page with the JPEG bit enabled, which is mishandled in FaxModem::writeECMData() in the faxd/CopyQuality.c++ file.