Описание
Security update for lynx
This update for lynx fixes the following issues:
- CVE-2016-9179: It was found that Lynx doesn't parse the authority component of the URL correctly when the host name part ends with '?', and could instead be tricked into connecting to a different host. (bsc#1008642)
This update was imported from the SUSE:SLE-12:Update update project.
Список пакетов
openSUSE Leap 42.1
lynx-2.8.7-6.1
openSUSE Leap 42.2
lynx-2.8.7-6.1
Ссылки
- E-Mail link for openSUSE-SU-2017:0668-1
- SUSE Security Ratings
Описание
lynx: It was found that Lynx doesn't parse the authority component of the URL correctly when the host name part ends with '?', and could instead be tricked into connecting to a different host.
Затронутые продукты
openSUSE Leap 42.1:lynx-2.8.7-6.1
openSUSE Leap 42.2:lynx-2.8.7-6.1
Ссылки
- CVE-2016-9179
- SUSE Bug 1008642