Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Heap-based buffer overflow in the convert_to_idna function in WWW/Library/Implementation/HTParse.c in Lynx 2.8.8dev.1 through 2.8.8dev.4 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a malformed URL containing a % (percent) character in the domain name.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Lynx 'WWW/Library/Implementation/HTParse.c' convert_to_idna函数缓冲区溢出漏洞
Vulnerability Description
Lynx是一个基于文本的WWW浏览器。它不能够显示图像或Java句柄,所以执行速度非常快。 Lynx 2.8.8dev.1至2.8.8dev.4版本中的WWW/Library/Implementation/HTParse.c中的convert_to_idna函数存在基于堆的缓冲区溢出漏洞。远程攻击者可以借助在域名中包含a%(百分比)字符的畸形URL导致拒绝服务(应用程序崩溃)或可能执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A