Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-9435

Опубликовано: 20 янв. 2017
Источник: debian
EPSS Низкий

Описание

The HTMLtagproc1 function in file.c in w3m before 0.5.3+git20161009 does not properly initialize values, which allows remote attackers to crash the application via a crafted html file, related to <dd> tags.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
w3mfixed0.5.3-30package
w3mfixed0.5.3-19+deb8u1jessiepackage
w3mno-dsawheezypackage

Примечания

  • https://github.com/tats/w3m/issues/16

  • Fixed by: https://github.com/tats/w3m/commit/33509cc81ec5f2ba44eb6fd98bd5c1b5873e46bd

EPSS

Процентиль: 80%
0.0141
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 9 лет назад

The HTMLtagproc1 function in file.c in w3m before 0.5.3+git20161009 does not properly initialize values, which allows remote attackers to crash the application via a crafted html file, related to <dd> tags.

CVSS3: 4.3
redhat
больше 9 лет назад

The HTMLtagproc1 function in file.c in w3m before 0.5.3+git20161009 does not properly initialize values, which allows remote attackers to crash the application via a crafted html file, related to <dd> tags.

CVSS3: 6.5
nvd
около 9 лет назад

The HTMLtagproc1 function in file.c in w3m before 0.5.3+git20161009 does not properly initialize values, which allows remote attackers to crash the application via a crafted html file, related to <dd> tags.

CVSS3: 6.5
github
больше 3 лет назад

The HTMLtagproc1 function in file.c in w3m before 0.5.3+git20161009 does not properly initialize values, which allows remote attackers to crash the application via a crafted html file, related to <dd> tags.

suse-cvrf
около 9 лет назад

Security update for w3m

EPSS

Процентиль: 80%
0.0141
Низкий