Bug#1019599: w3m: CVE-2022-38223

2022-12-26 Thread Salvatore Bonaccorso
Control: tags -1 + fixed-upstream Hi, On Mon, Sep 12, 2022 at 10:35:41PM +0200, Moritz Mühlenhoff wrote: > Source: w3m > X-Debbugs-CC: t...@security.debian.org > Severity: important > Tags: security > > Hi, > > The following vulnerability was published for w3m. > > CVE-2022-38223[0]: > | There

Bug#1019599: w3m: CVE-2022-38223

2022-09-12 Thread Moritz Mühlenhoff
Source: w3m X-Debbugs-CC: t...@security.debian.org Severity: important Tags: security Hi, The following vulnerability was published for w3m. CVE-2022-38223[0]: | There is an out-of-bounds write in checkType located in etc.c in w3m | 0.5.3. It can be triggered by sending a crafted HTML file to th