Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Ytnef Project

First CVE: Feb 24, 2017Active for: 9 yearsTotal CVEs: 26
47.0
VTI Score
High

Ytnef Project maintains a conversion utility that parses and extracts data from TNEF-formatted email attachments, a narrow but strategically positioned tool embedded in mail-processing pipelines and email clients across various platforms. Despite its focused scope, the project ranks prominently in vulnerability landscapes relative to similar utilities, reflecting its role in handling untrusted, binary-formatted input from external sources. Vulnerabilities affecting the project skew toward moderate-to-serious outcomes and recur across a set of memory-safety and input-validation weakness classes—out-of-bounds reads, buffer-boundary violations, path traversal, integer overflow, and NULL-pointer dereferences—that are characteristic of C-based parsers operating on adversary-controlled data. Defenders integrating or deploying this utility should treat parser-layer updates as meaningful and ensure it runs with appropriate sandboxing or privilege constraints; live severity, exploitation, and exposure counts are shown alongside this summary.

FAUCET AI Generated
26
Total CVEs
More Total CVEs than 97% of tracked vendors
8.7
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 99% of tracked vendors
7.2
Avg CVSS Score
Higher Avg CVSS Score than 52% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Ytnef Project over time

Volume of CVEsAvg CVSS Base Score
First CVE
Feb 24, 2017
9 years ago
Most Recent CVE
May 26, 2021
1,885 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (26 CVEs).

26 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2017-9058CRITICAL
In libytnef in ytnef through 1.9.2, there is a heap-based buffer over-read due to incorrect boundary checking in the SIZECHECK macro in lib/ytnef.c.
May 18, 20179.832NONO
CVE-2009-3887CRITICAL
ytnef has directory traversal
Oct 29, 20199.831NONO
CVE-2017-9146HIGH
The TNEFFillMapi function in lib/ytnef.c in libytnef in ytnef through 1.9.2 does not ensure a nonzero count value before a certain memory allocation, which allows remote attackers
May 22, 20178.828NONO
CVE-2021-3404HIGH
In ytnef 1.9.3, the SwapWord function in lib/ytnef.c allows remote attackers to cause a denial-of-service (and potentially code execution) due to a heap buffer overflow which can b
Mar 4, 20217.825NONO
CVE-2021-3403HIGH
In ytnef 1.9.3, the TNEFSubjectHandler function in lib/ytnef.c allows remote attackers to cause a denial-of-service (and potentially code execution) due to a double free which can
Mar 4, 20217.825NONO
CVE-2017-6800HIGH
An issue was discovered in ytnef before 1.9.2. An invalid memory access (heap-based buffer over-read) can occur during handling of LONG data types, related to MAPIPrint() in libytn
Mar 10, 20177.525NONO
CVE-2009-3721HIGH
Multiple directory traversal and buffer overflow vulnerabilities were discovered in yTNEF, and in Evolution's TNEF parser that is derived from yTNEF. A crafted email could cause th
May 26, 20217.824NONO
CVE-2017-6802HIGH
An issue was discovered in ytnef before 1.9.2. There is a potential heap-based buffer over-read on incoming Compressed RTF Streams, related to DecompressRTF() in libytnef.
Mar 10, 20177.524NONO
CVE-2017-6801HIGH
An issue was discovered in ytnef before 1.9.2. There is a potential out-of-bounds access with fields of Size 0 in TNEFParse() in libytnef.
Mar 10, 20177.524NONO
CVE-2017-6306HIGH
An issue was discovered in ytnef before 1.9.1. This is related to a patch described as "9 of 9. Directory Traversal using the filename; SanitizeFilename function in settings.c."
Feb 24, 20177.824NONO
View all 26 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products26 CVEs
35%
58%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local20 (76.9%)
Network6 (23.1%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low26 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None6 (23.1%)
Unknown0 (0.0%)
Required20 (76.9%)
Privileges Required
Low1 (3.8%)
High0 (0.0%)
None25 (96.2%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (26 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Ytnef Project.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Ytnef Project — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Ytnef Project's Products

View all 2 CNAs →

Top CWEs