|
|
| |
|
| |
elinks: off-by-one buffer overflow
| Package(s): | elinks |
CVE #(s): | CVE-2008-7224
|
| Created: | October 2, 2009 |
Updated: | October 30, 2009 |
| Description: |
From the Red Hat advisory:
An off-by-one buffer overflow flaw was discovered in the way ELinks handled
its internal cache of string representations for HTML special entities. A
remote attacker could use this flaw to create a specially-crafted HTML file
that would cause ELinks to crash or, possibly, execute arbitrary code when
rendered. |
| Alerts: |
|
( Log in to post comments)
|
|
|