CVE-2026-103679Medium· 6.5▾ SunlitA flaw was found in tnef. A remote attacker could exploit this vulnerability by providing a specially crafted Transport Neutral Encapsulation Format (TNEF) file containing multiple message bodies. During extraction, improper memory manag…
▾ Sunlit zone — Low / medium · no exploitation signal
impact 35.8 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
A flaw was found in tnef. A remote attacker could exploit this vulnerability by providing a specially crafted Transport Neutral Encapsulation Format (TNEF) file containing multiple message bodies. During extraction, improper memory management triggers a use-after-free and double-free condition, causing the application to crash and resulting in a Denial of Service (DoS).
Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-103680Low· 3.1A flaw was found in tnef
CVE-2026-103678Medium· 5.4A flaw was found in tnef
CVE-2025-20802Medium· 6.7In geniezone, there is a possible memory corruption due to use after free
CVE-2025-1012High· 7.5A race during concurrent delazification could have led to a use-after-free
CVE-2025-1010High· 8.8An attacker could have caused a use-after-free via the Custom Highlight API, leading to a potentially exploitable crash
CVE-2025-1009Critical· 9.8An attacker could have caused a use-after-free via crafted XSLT data, leading to a potentially exploitable crash