elinks: off-by-one buffer overflow
| Package(s): | elinks | CVE #(s): | CVE-2008-7224 | ||||||||||||||||||||||||
| Created: | October 2, 2009 | Updated: | October 30, 2009 | ||||||||||||||||||||||||
| Description: | From the Red Hat advisory: An off-by-one buffer overflow flaw was discovered in the way ELinks handled its internal cache of string representations for HTML special entities. A remote attacker could use this flaw to create a specially-crafted HTML file that would cause ELinks to crash or, possibly, execute arbitrary code when rendered. | ||||||||||||||||||||||||||
| Alerts: |
| ||||||||||||||||||||||||||
