Vulnerabilities (CVE)

Filtered by vendor Ctan Subscribe
Total 6 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-51890 1 Ctan 1 Mathtex 2024-11-21 N/A 7.5 HIGH
An infinite loop issue discovered in Mathtex 1.05 and before allows a remote attackers to consume CPU resources via crafted string in the application URL.
CVE-2023-51889 1 Ctan 1 Mathtex 2024-11-21 N/A 9.8 CRITICAL
Stack Overflow vulnerability in the validate() function in Mathtex v.1.05 and before allows a remote attacker to execute arbitrary code via crafted string in the application URL.
CVE-2023-51888 1 Ctan 1 Mathtex 2024-11-21 N/A 7.5 HIGH
Buffer Overflow vulnerability in the nomath() function in Mathtex v.1.05 and before allows a remote attacker to cause a denial of service via a crafted string in the application URL.
CVE-2023-51887 1 Ctan 1 Mathtex 2024-11-21 N/A 9.8 CRITICAL
Command Injection vulnerability in Mathtex v.1.05 and before allows a remote attacker to execute arbitrary code via crafted string in application URL.
CVE-2023-51886 1 Ctan 1 Mathtex 2024-11-21 N/A 7.5 HIGH
Buffer Overflow vulnerability in the main() function in Mathtex 1.05 and before allows a remote attacker to cause a denial of service when using \convertpath.
CVE-2023-51885 1 Ctan 1 Mathtex 2024-11-21 N/A 9.8 CRITICAL
Buffer Overflow vulnerability in Mathtex v.1.05 and before allows a remote attacker to execute arbitrary code via the length of the LaTeX string component.