Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-1000211

Опубликовано: 17 нояб. 2017
Источник: debian
EPSS Низкий

Описание

Lynx before 2.8.9dev.16 is vulnerable to a use after free in the HTML parser resulting in memory disclosure, because HTML_put_string() can append a chunk onto itself.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
lynxfixed2.8.9dev16-1package
lynxno-dsastretchpackage
lynx-curremovedpackage
lynx-curno-dsajessiepackage

Примечания

  • https://github.com/ThomasDickey/lynx-snapshots/commit/280a61b300a1614f6037efc0902ff7ecf17146e9

EPSS

Процентиль: 75%
0.01705
Низкий

Связанные уязвимости

CVSS3: 5.3
ubuntu
почти 9 лет назад

Lynx before 2.8.9dev.16 is vulnerable to a use after free in the HTML parser resulting in memory disclosure, because HTML_put_string() can append a chunk onto itself.

CVSS3: 5.3
redhat
больше 8 лет назад

Lynx before 2.8.9dev.16 is vulnerable to a use after free in the HTML parser resulting in memory disclosure, because HTML_put_string() can append a chunk onto itself.

CVSS3: 5.3
nvd
почти 9 лет назад

Lynx before 2.8.9dev.16 is vulnerable to a use after free in the HTML parser resulting in memory disclosure, because HTML_put_string() can append a chunk onto itself.

suse-cvrf
больше 8 лет назад

Security update for lynx

suse-cvrf
больше 8 лет назад

Security update for lynx

EPSS

Процентиль: 75%
0.01705
Низкий