tats w3m 0.5.2-3

CPE Details

tats w3m 0.5.2-3
0.5.2-3
2023-12-29
17h38 +00:00
2023-12-29
17h38 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:tats:w3m:0.5.2-3:*:*:*:*:*:*:*

Informations

Vendor

tats

Product

w3m

Version

0.5.2-3

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2018-6196 2018-01-25 02h00 +00:00 w3m through 0.5.3 is prone to an infinite recursion flaw in HTMLlineproc0 because the feed_table_block_tag function in table.c does not prevent a negative indent value.
7.5
High
CVE-2018-6197 2018-01-25 02h00 +00:00 w3m through 0.5.3 is prone to a NULL pointer dereference flaw in formUpdateBuffer in form.c.
7.5
High
CVE-2018-6198 2018-01-25 02h00 +00:00 w3m through 0.5.3 does not properly handle temporary files when the ~/.w3m directory is unwritable, which allows a local attacker to craft a symlink attack to overwrite arbitrary files.
4.7
Medium
CVE-2016-9435 2017-01-20 14h00 +00:00 The HTMLtagproc1 function in file.c in w3m before 0.5.3+git20161009 does not properly initialize values, which allows remote attackers to crash the application via a crafted html file, related to
tags.
6.5
Medium
CVE-2016-9436 2017-01-20 14h00 +00:00 parsetagx.c in w3m before 0.5.3+git20161009 does not properly initialize values, which allows remote attackers to crash the application via a crafted html file, related to a tag.
6.5
Medium
CVE-2016-9422 2016-12-12 01h00 +00:00 An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. The feed_table_tag function in w3m doesn't properly validate the value of table span, which allows remote attackers to cause a denial of service (stack and/or heap buffer overflow) and possibly execute arbitrary code via a crafted HTML page.
8.8
High
CVE-2016-9423 2016-12-12 01h00 +00:00 An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Heap-based buffer overflow in w3m allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTML page.
8.8
High
CVE-2016-9424 2016-12-12 01h00 +00:00 An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m doesn't properly validate the value of tag attribute, which allows remote attackers to cause a denial of service (heap buffer overflow crash) and possibly execute arbitrary code via a crafted HTML page.
8.8
High
CVE-2016-9425 2016-12-12 01h00 +00:00 An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Heap-based buffer overflow in the addMultirowsForm function in w3m allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTML page.
8.8
High
CVE-2016-9426 2016-12-12 01h00 +00:00 An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Integer overflow vulnerability in the renderTable function in w3m allows remote attackers to cause a denial of service (OOM) and possibly execute arbitrary code due to bdwgc's bug (CVE-2016-9427) via a crafted HTML page.
8.8
High
CVE-2016-9428 2016-12-12 01h00 +00:00 An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Heap-based buffer overflow in the addMultirowsForm function in w3m allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTML page.
8.8
High
CVE-2016-9429 2016-12-12 01h00 +00:00 An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Buffer overflow in the formUpdateBuffer function in w3m allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTML page.
8.8
High
CVE-2016-9430 2016-12-12 01h00 +00:00 An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page.
6.5
Medium
CVE-2016-9431 2016-12-12 01h00 +00:00 An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Infinite recursion vulnerability in w3m allows remote attackers to cause a denial of service via a crafted HTML page.
6.5
Medium
CVE-2016-9432 2016-12-12 01h00 +00:00 An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote attackers to cause a denial of service (memory corruption, segmentation fault, and crash) via a crafted HTML page.
6.5
Medium
CVE-2016-9433 2016-12-12 01h00 +00:00 An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote attackers to cause a denial of service (out-of-bounds array access) via a crafted HTML page.
6.5
Medium
CVE-2016-9434 2016-12-12 01h00 +00:00 An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page.
6.5
Medium
CVE-2016-9437 2016-12-12 01h00 +00:00 An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) and possibly memory corruption via a crafted HTML page.
6.5
Medium
CVE-2016-9438 2016-12-12 01h00 +00:00 An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page.
6.5
Medium
CVE-2016-9439 2016-12-12 01h00 +00:00 An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Infinite recursion vulnerability in w3m allows remote attackers to cause a denial of service via a crafted HTML page.
6.5
Medium
CVE-2016-9440 2016-12-12 01h00 +00:00 An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page.
6.5
Medium
CVE-2016-9441 2016-12-12 01h00 +00:00 An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page.
6.5
Medium
CVE-2016-9442 2016-12-12 01h00 +00:00 An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote attackers to cause memory corruption in certain conditions via a crafted HTML page.
6.5
Medium
CVE-2016-9443 2016-12-12 01h00 +00:00 An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page.
6.5
Medium
CVE-2016-9622 2016-12-12 01h00 +00:00 An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page.
6.5
Medium
CVE-2016-9623 2016-12-12 01h00 +00:00 An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page.
6.5
Medium
CVE-2016-9624 2016-12-12 01h00 +00:00 An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page.
6.5
Medium
CVE-2016-9625 2016-12-12 01h00 +00:00 An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. Infinite recursion vulnerability in w3m allows remote attackers to cause a denial of service via a crafted HTML page.
6.5
Medium
CVE-2016-9626 2016-12-12 01h00 +00:00 An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. Infinite recursion vulnerability in w3m allows remote attackers to cause a denial of service via a crafted HTML page.
6.5
Medium
CVE-2016-9627 2016-12-12 01h00 +00:00 An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. w3m allows remote attackers to cause a denial of service (heap buffer overflow and crash) via a crafted HTML page.
6.5
Medium
CVE-2016-9628 2016-12-12 01h00 +00:00 An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page.
6.5
Medium
CVE-2016-9629 2016-12-12 01h00 +00:00 An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page.
6.5
Medium
CVE-2016-9630 2016-12-12 01h00 +00:00 An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. w3m allows remote attackers to cause a denial of service (global buffer overflow and crash) via a crafted HTML page.
6.5
Medium
CVE-2016-9631 2016-12-12 01h00 +00:00 An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page.
6.5
Medium
CVE-2016-9632 2016-12-12 01h00 +00:00 An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. w3m allows remote attackers to cause a denial of service (global buffer overflow and crash) via a crafted HTML page.
6.5
Medium
CVE-2016-9633 2016-12-12 01h00 +00:00 An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. w3m allows remote attackers to cause a denial of service (infinite loop and resource consumption) via a crafted HTML page.
6.5
Medium