Input Validation Flaw in TNEF by Red Hat
CVE-2026-103678
5.4MEDIUM
What is CVE-2026-103678?
A vulnerability exists in TNEF that allows an attacker to exploit the application by crafting a malicious file containing uncompressed Rich Text Format (RTF) data. The issue stems from the application's failure to validate input buffer boundaries prior to data copying operations in the get_rtf_data_from_buf() function. This oversight can lead to reading beyond allocated memory ranges, which may result in application crashes and potential Denial of Service (DoS) scenarios, as well as the unintended exposure of sensitive memory contents in the output files.
References
CVSS V3.1
Score:
5.4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Red Hat would like to thank Julien Ahrens (RCE Security GmbH) for reporting this issue.
