Описание
Security update for lynx
This update for lynx fixes the following issues:
Security issue fixed:
- CVE-2017-1000211: Fix use after free in the HTMLparser that can resulting in memory disclosure (bsc#1068885).
This update was imported from the SUSE:SLE-12:Update update project.
Список пакетов
openSUSE Leap 42.2
lynx-2.8.7-11.1
openSUSE Leap 42.3
lynx-2.8.7-11.1
Ссылки
- E-Mail link for openSUSE-SU-2017:3198-1
- SUSE Security Ratings
Описание
Lynx before 2.8.9dev.16 is vulnerable to a use after free in the HTML parser resulting in memory disclosure, because HTML_put_string() can append a chunk onto itself.
Затронутые продукты
openSUSE Leap 42.2:lynx-2.8.7-11.1
openSUSE Leap 42.3:lynx-2.8.7-11.1
Ссылки
- CVE-2017-1000211
- SUSE Bug 1068885