The Bibutils Project maintains a specialized bibliography-management utility that, despite narrow scope, sits in the processing pipelines of academic and research workflows where it handles untrusted bibliographic data. Its durable signal centers on memory-safety issues including NULL-pointer dereferences and buffer-boundary violations, characteristic of a C-based parser handling variable-length structured input. Current exploitation activity, severity distribution, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Bibutils Project over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-10775MEDIUM NULL pointer dereference in the _fields_add function in fields.c in libbibcore.a in bibutils through 6.2 allows remote attackers to cause a denial of service (application crash), a | May 7, 2018 | 6.5 | 21 | NO | NO |
CVE-2018-10774MEDIUM Read access violation in the isiin_keyword function in isiin.c in libbibutils.a in bibutils through 6.2 allows remote attackers to cause a denial of service (application crash), as | May 7, 2018 | 6.5 | 21 | NO | NO |
CVE-2018-10773MEDIUM NULL pointer deference in the addsn function in serialno.c in libbibcore.a in bibutils through 6.2 allows remote attackers to cause a denial of service (application crash), as demo | May 7, 2018 | 6.5 | 21 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Bibutils Project.
Media articles that mention a CVE ID that affects a product developed by Bibutils Project — matched by CVE ID, not by vendor name.