Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2010-2810

Опубликовано: 05 авг. 2010
Источник: redhat
EPSS Низкий

Описание

Heap-based buffer overflow in the convert_to_idna function in WWW/Library/Implementation/HTParse.c in Lynx 2.8.8dev.1 through 2.8.8dev.4 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a malformed URL containing a % (percent) character in the domain name.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 3lynxNot affected
Red Hat Enterprise Linux 4lynxNot affected
Red Hat Enterprise Linux 5lynxNot affected
Red Hat Enterprise Linux 6lynxNot affected

Показывать по

Дополнительная информация

Дефект:
CWE-122
https://bugzilla.redhat.com/show_bug.cgi?id=630677Lynx: Heap-based buffer overflow by processing URLs with % (percent) character in the domain name

EPSS

Процентиль: 85%
0.02376
Низкий

Связанные уязвимости

ubuntu
больше 15 лет назад

Heap-based buffer overflow in the convert_to_idna function in WWW/Library/Implementation/HTParse.c in Lynx 2.8.8dev.1 through 2.8.8dev.4 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a malformed URL containing a % (percent) character in the domain name.

nvd
больше 15 лет назад

Heap-based buffer overflow in the convert_to_idna function in WWW/Library/Implementation/HTParse.c in Lynx 2.8.8dev.1 through 2.8.8dev.4 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a malformed URL containing a % (percent) character in the domain name.

debian
больше 15 лет назад

Heap-based buffer overflow in the convert_to_idna function in WWW/Libr ...

github
больше 3 лет назад

Heap-based buffer overflow in the convert_to_idna function in WWW/Library/Implementation/HTParse.c in Lynx 2.8.8dev.1 through 2.8.8dev.4 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a malformed URL containing a % (percent) character in the domain name.

EPSS

Процентиль: 85%
0.02376
Низкий