CVE-2014-9274: Debian Linux
High severity, CVSS 7.5. EPSS: 5.8% chance of exploitation in the next 30 days.
UnRTF allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code as demonstrated by a file containing the string "{\cb-999999999".
Affected products
- Debian Debian Linux: version 7.0 only; version 8.0 only
- Fedoraproject Fedora: version 21 only
- Mageia Project Mageia: version 4 only
- Unrtf Project Unrtf: up to and including 0.21.6
Published 2014-12-09. Last modified 2026-06-17.