The HTMLtagproc1 function in file.c in w3m before 0.5.3+git20161009 does not properly initialize values, which allows remote attackers to crash the application via a crafted html file, related to <dd> tags.
Metrics
Affected Vendors & Products
References
History
Thu, 14 Nov 2024 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published: 2017-01-20T15:00:00
Updated: 2024-11-14T20:06:38.851Z
Reserved: 2016-11-18T00:00:00
Link: CVE-2016-9435
Updated: 2024-08-06T02:50:38.388Z
Status : Deferred
Published: 2017-01-20T15:59:00.613
Modified: 2025-04-20T01:37:25.860
Link: CVE-2016-9435