  • CVE ID: CVE-2017-9471
  • Vendors: Ytnef_project
  • Date: June 07, 2017
  • Severity: Medium
  • Impact score: 2.90
  • Exploit score: 8.60

In ytnef 1.9.2, the SwapWord function in lib/ytnef.c allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted file.

