Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2017:0668-1

Опубликовано: 11 мар. 2017
Источник: suse-cvrf

Описание

Security update for lynx

This update for lynx fixes the following issues:

  • CVE-2016-9179: It was found that Lynx doesn't parse the authority component of the URL correctly when the host name part ends with '?', and could instead be tricked into connecting to a different host. (bsc#1008642)

This update was imported from the SUSE:SLE-12:Update update project.

Список пакетов

openSUSE Leap 42.1
lynx-2.8.7-6.1
openSUSE Leap 42.2
lynx-2.8.7-6.1

Описание

lynx: It was found that Lynx doesn't parse the authority component of the URL correctly when the host name part ends with '?', and could instead be tricked into connecting to a different host.


Затронутые продукты
openSUSE Leap 42.1:lynx-2.8.7-6.1
openSUSE Leap 42.2:lynx-2.8.7-6.1

Ссылки