The HTMLtagproc1 function in file.c in w3m prior to 0.5.3+git20161009 does not properly initialize values, which allows remote malicious users to crash the application via a crafted html file, related to <dd> tags.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
opensuse project leap 42.1 |
||
opensuse leap 42.2 |
||
tats w3m |