CVE-2015-8106: Fedoraproject Fedora
High severity, CVSS 7.8. EPSS: 3.6% chance of exploitation in the next 30 days.
Format string vulnerability in the CmdKeywords function in funct1.c in latex2rtf before 2.3.10 allows remote attackers to execute arbitrary code via format string specifiers in the \keywords command in a crafted TeX file.
Affected products
- Fedoraproject Fedora: version 22 only; version 23 only; version 24 only
- LATEX2RTF Project LATEX2RTF: version 2.3.8 only
Published 2016-04-18. Last modified 2026-06-17.