CVE-2017-6309: Debian Linux

High severity, CVSS 7.8. EPSS: 1.4% chance of exploitation in the next 30 days.

An issue was discovered in tnef before 1.4.13. Two type confusions have been identified in the parse_file() function. These might lead to invalid read and write operations, controlled by an attacker.

Affected products

Published 2017-02-24. Last modified 2026-06-17.