Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-1000211

Опубликовано: 17 нояб. 2017
Источник: debian

Описание

Lynx before 2.8.9dev.16 is vulnerable to a use after free in the HTML parser resulting in memory disclosure, because HTML_put_string() can append a chunk onto itself.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
lynxfixed2.8.9dev16-1package
lynxno-dsastretchpackage
lynx-curremovedpackage
lynx-curno-dsajessiepackage

Примечания

  • https://github.com/ThomasDickey/lynx-snapshots/commit/280a61b300a1614f6037efc0902ff7ecf17146e9

Связанные уязвимости

CVSS3: 5.3
ubuntu
около 8 лет назад

Lynx before 2.8.9dev.16 is vulnerable to a use after free in the HTML parser resulting in memory disclosure, because HTML_put_string() can append a chunk onto itself.

CVSS3: 5.3
redhat
около 8 лет назад

Lynx before 2.8.9dev.16 is vulnerable to a use after free in the HTML parser resulting in memory disclosure, because HTML_put_string() can append a chunk onto itself.

CVSS3: 5.3
nvd
около 8 лет назад

Lynx before 2.8.9dev.16 is vulnerable to a use after free in the HTML parser resulting in memory disclosure, because HTML_put_string() can append a chunk onto itself.

suse-cvrf
около 8 лет назад

Security update for lynx

suse-cvrf
около 8 лет назад

Security update for lynx