CVE List

Id CVE No. Status Description Phase Votes Comments Actions
96244  CVE-2016-9424  Candidate  An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m doesn"t properly validate the value of tag attribute, which allows remote attackers to cause a denial of service (heap buffer overflow crash) and possibly execute arbitrary code via a crafted HTML page.  Assigned (20161118)  None (candidate not yet proposed)    View
96245  CVE-2016-9425  Candidate  An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Heap-based buffer overflow in the addMultirowsForm function in w3m allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTML page.  Assigned (20161118)  None (candidate not yet proposed)    View
96246  CVE-2016-9426  Candidate  An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Integer overflow vulnerability in the renderTable function in w3m allows remote attackers to cause a denial of service (OOM) and possibly execute arbitrary code due to bdwgc"s bug (CVE-2016-9427) via a crafted HTML page.  Assigned (20161118)  None (candidate not yet proposed)    View
96247  CVE-2016-9427  Candidate  Integer overflow vulnerability in bdwgc before 2016-09-27 allows attackers to cause client of bdwgc denial of service (heap buffer overflow crash) and possibly execute arbitrary code via huge allocation.  Assigned (20161118)  None (candidate not yet proposed)    View
96248  CVE-2016-9428  Candidate  An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Heap-based buffer overflow in the addMultirowsForm function in w3m allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTML page.  Assigned (20161118)  None (candidate not yet proposed)    View

Page 18647 of 20943, showing 5 records out of 104715 total, starting on record 93231, ending on 93235

Actions