Publishing details

Changelog

w3m (0.5.3-26ubuntu0.2) xenial-security; urgency=medium

  * SECURITY UPDATE: Infinite recursion flaw in HTMLlineproc0
    - debian/patches/CVE-2018-6196.patch: prevent negative indent value
      in table.c.
    - CVE-2018-6196
  * SECURITY UPDATE: NULL pointer dereference flaw in formUpdateBuffer
    - debian/patches/CVE-2018-6197.patch: prevent invalid columnPos() call
      in form.c.
    - CVE-2018-6197
  * SECURITY UPDATE: does not properly handle temp files
    - debian/patches/CVE-218-6198.patch: make temp directory safely
      in config.h.dist, config.h.in, configure, configure.ac, main.c and rc.c.
    - CVE-2018-6198

 -- <email address hidden> (Leonidas S. Barbosa)  Tue, 30 Jan 2018 16:24:07 -0300

Available diffs

Builds

Built packages

Package files