Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-9436

Опубликовано: 20 янв. 2017
Источник: debian
EPSS Низкий

Описание

parsetagx.c in w3m before 0.5.3+git20161009 does not properly initialize values, which allows remote attackers to crash the application via a crafted html file, related to a <i> tag.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
w3mfixed0.5.3-30package
w3mfixed0.5.3-19+deb8u1jessiepackage
w3mno-dsawheezypackage

Примечания

  • https://github.com/tats/w3m/issues/16

  • Fixed by: https://github.com/tats/w3m/commit/33509cc81ec5f2ba44eb6fd98bd5c1b5873e46bd

EPSS

Процентиль: 88%
0.03353
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 9 лет назад

parsetagx.c in w3m before 0.5.3+git20161009 does not properly initialize values, which allows remote attackers to crash the application via a crafted html file, related to a <i> tag.

CVSS3: 4.3
redhat
около 10 лет назад

parsetagx.c in w3m before 0.5.3+git20161009 does not properly initialize values, which allows remote attackers to crash the application via a crafted html file, related to a <i> tag.

CVSS3: 6.5
nvd
больше 9 лет назад

parsetagx.c in w3m before 0.5.3+git20161009 does not properly initialize values, which allows remote attackers to crash the application via a crafted html file, related to a <i> tag.

CVSS3: 6.5
github
больше 4 лет назад

parsetagx.c in w3m before 0.5.3+git20161009 does not properly initialize values, which allows remote attackers to crash the application via a crafted html file, related to a <i> tag.

fstec
больше 9 лет назад

Уязвимость операционной системы OpenSUSE Leap, позволяющая нарушителю обойти проверку сертификата

EPSS

Процентиль: 88%
0.03353
Низкий