Unrtf is a lightweight document-conversion utility that translates Rich Text Format files into other markup languages, and its vulnerability footprint centers on memory-safety issues inherent to parsing binary file formats, particularly improper buffer-boundary checks, NULL-pointer dereferences, and stack-based buffer overflows. These weakness classes reflect the challenges of safely handling untrusted, variable-length structured data in a format-conversion context where malformed input can trigger unexpected memory access. Current CVE counts, severity distribution, and exploitation activity are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Unrtf Project over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2016-10091HIGH Multiple stack-based buffer overflows in unrtf 0.21.9 allow remote attackers to cause a denial-of-service by writing a negative integer to the (1) cmd_expand function, (2) cmd_embo | Apr 21, 2017 | 7.5 | 25 | NO | NO |
CVE-2025-65411HIGH A NULL pointer dereference in the src/path.c component of GNU Unrtf v0.21.10 allows attackers to cause a Denial of Service (DoS) via injecting a crafted payload into the search_pat | Dec 30, 2025 | 7.5 | 24 | NO | NO |
CVE-2025-65410MEDIUM A stack overflow in the src/main.c component of GNU Unrtf v0.21.10 allows attackers to cause a Denial of Service (DoS) via injecting a crafted input into the filename parameter. | Dec 23, 2025 | 6.2 | 22 | NO | NO |
CVE-2014-9275HIGH UnRTF allows remote attackers to cause a denial of service (out-of-bounds memory access and crash) and possibly execute arbitrary code via a crafted RTF file. | Dec 9, 2014 | 7.5 | 21 | NO | NO |
CVE-2014-9274HIGH UnRTF allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code as demonstrated by a file containing the string "{\cb-999999999". | Dec 9, 2014 | 7.5 | 21 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Unrtf Project.
Media articles that mention a CVE ID that affects a product developed by Unrtf Project — matched by CVE ID, not by vendor name.