An out-of-bounds write issue has been discovered in the backspace handling of the checkType() function in etc.c within the W3M application. This vulnerability is triggered by supplying a specially crafted HTML file to the w3m binary. Exploitation of this flaw could lead to application crashes, resulting in a denial of service condition.
2023-12-21T16:15:10.017
2024-11-21T08:34:44.253
Modified
CVSSv3.1: 5.5 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | tats | w3m | 0.5.3\+git20230121-1 | Yes |
Application | tats | w3m | 0.5.3\+git20230121-2 | Yes |
Application | tats | w3m | 0.5.3\+git20230129 | Yes |
Application | fedoraproject | extra_packages_for_enterprise_linux | 8.0 | Yes |
Operating System | fedoraproject | fedora | 39 | Yes |