CVE-2023-4255
21.12.2023, 16:15
An out-of-bounds write issue has been discovered in the backspace handling of the checkType() function in etc.c within the W3M application. This vulnerability is triggered by supplying a specially crafted HTML file to the w3m binary. Exploitation of this flaw could lead to application crashes, resulting in a denial of service condition.Enginsight
Vendor | Product | Version |
---|---|---|
tats | w3m | 0.5.3\+git20230121-1 |
tats | w3m | 0.5.3\+git20230121-2 |
tats | w3m | 0.5.3\+git20230129 |
fedoraproject | extra_packages_for_enterprise_linux | 8.0 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Ubuntu Product | |||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
w3m |
|
Common Weakness Enumeration
References