Hylafax is a narrowly scoped fax-transmission software suite that, despite limited product breadth, occupies a specialized niche in legacy communication infrastructure and remains embedded in certain enterprise and government deployments. Its vulnerability profile centers on a single product and recurs through memory-safety weakness classes including access of uninitialized pointers and out-of-bounds writes, characteristic of C-based daemon software with long operational lifespans, and its disclosures have frequently acquired public exploit code. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Hylafax over time
Signals from CVEs in this vendor scope (10 CVEs).
10 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2003-0886HIGH Format string vulnerability in hfaxd for Hylafax 4.1.7 and earlier allows remote attackers to execute arbitrary code. | Dec 1, 2003 | 10.0 | 42 | NO | YES |
CVE-2005-3539HIGH Multiple eval injection vulnerabilities in HylaFAX 4.2.3 and earlier allow remote attackers to execute arbitrary commands via (1) the notify script in HylaFAX 4.2.0 to 4.2.3 and (2 | Dec 31, 2005 | 7.5 | 34 | NO | YES |
CVE-2018-17141CRITICAL HylaFAX 6.0.6 and HylaFAX+ 5.6.0 allow remote attackers to execute arbitrary code via a dial-in session that provides a FAX page with the JPEG bit enabled, which is mishandled in F | Sep 21, 2018 | 9.8 | 33 | NO | NO |
CVE-1999-1340HIGH Buffer overflow in faxalter in hylafax 4.0.2 allows local users to gain privileges via a long -m command line argument. | Nov 4, 1999 | 7.2 | 27 | NO | YES |
CVE-2004-1182HIGH hfaxd in HylaFAX before 4.2.1, when installed with a "weak" hosts.hfaxd file, allows remote attackers to authenticate and bypass intended access restrictions via a crafted (1) user | Dec 31, 2004 | 7.5 | 24 | NO | NO |
CVE-2001-0387HIGH Format string vulnerability in hfaxd in HylaFAX before 4.1.b2_2 allows local users to gain privileges via the -q command line argument. | Jul 2, 2001 | 7.2 | 23 | NO | NO |
CVE-2002-1050HIGH Buffer overflow in HylaFAX faxgetty before 4.1.3 allows remote attackers to cause a denial of service, and possibly execute arbitrary code, via a long line of image data. | Oct 4, 2002 | 7.5 | 21 | NO | NO |
CVE-2002-1049MEDIUM Format string vulnerability in HylaFAX faxgetty before 4.1.3 allows remote attackers to cause a denial of service (crash) via the TSI data element. | Oct 4, 2002 | 5.0 | 15 | NO | NO |
HylaFax 4.2.1 and earlier does not create or verify ownership of the UNIX domain socket, which might allow local users to read faxes and cause a denial of service by creating the s | Sep 27, 2005 | 3.6 | 13 | NO | NO |
xferfaxstats in HylaFax 4.2.1 and earlier allows local users to overwrite arbitrary files via a symlink attack on the xferfax$$ temporary file. | Sep 27, 2005 | 2.1 | 11 | NO | NO |
Signals from CVEs in this vendor scope (10 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Hylafax.
Media articles that mention a CVE ID that affects a product developed by Hylafax — matched by CVE ID, not by vendor name.