CVE-2017-1000211
published 2017-11-17CVE-2017-1000211: Lynx before 2.8.9dev.16 is vulnerable to a use after free in the HTML parser resulting in memory disclosure, because HTML_put_string() can append a chunk onto…
PriorityP426medium5.3CVSS 3.0
AVNACLPRNUINSUCLINAN
EPSS
1.70%
75.0th percentile
Lynx before 2.8.9dev.16 is vulnerable to a use after free in the HTML parser resulting in memory disclosure, because HTML_put_string() can append a chunk onto itself.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | lynx | < lynx 2.8.9dev16-1 (bookworm) | lynx 2.8.9dev16-1 (bookworm) |
| lynx_project | lynx | — | — |
| lynx_project | lynx | >= 0 < 2.8.9dev16-1 | 2.8.9dev16-1 |
| lynx_project | lynx | >= 0 < 2.8.9dev16-1 | 2.8.9dev16-1 |
| lynx_project | lynx | >= 0 < 2.8.9dev16-1 | 2.8.9dev16-1 |
| lynx_project | lynx | >= 0 < 2.8.9dev16-1 | 2.8.9dev16-1 |
CVSS provenance
nvdv3.05.3MEDIUMCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
osv7.5HIGH
vendor_ubuntu7.5HIGH
vendor_debian5.3MEDIUM
vendor_redhat5.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Lynx vulnerabilities
vendor_ubuntu·2021-03-15·CVSS 7.5
CVE-2017-1000211 [HIGH] Lynx vulnerabilities
Title: Lynx vulnerabilities
Summary: Several security issues were fixed in Lynx.
It was discovered that Lynx incorrectly handled certain URLs. A remote attacker
could possibly use this issue to obtain sensitive information or other
unspecified impact. This issue only affected Ubuntu 16.04 ESM.
(CVE-2016-9179)
It was discovered that Lynx incorrectly handled certain HTML files. A remote
attacker could possibly use this issue to obtain sensitive information.
This issue only affected Ubuntu 16.04 ESM. (CVE-2017-1000211)
Thorsten Glaser discovered that Lynx mishandles the userinfo subcomponents of
a URI. An attacker monitoring the network could discover cleartext
credentials because they may appear in SNI data. (CVE-2021-38165)
Instructions: In general, a standard system update will make a
Red Hat
lynx: Use after free in HTML.c:HTML_put_string() can lead to memory disclosure
vendor_redhat·2017-12-06·CVSS 5.3
CVE-2017-1000211 [MEDIUM] CWE-416 lynx: Use after free in HTML.c:HTML_put_string() can lead to memory disclosure
lynx: Use after free in HTML.c:HTML_put_string() can lead to memory disclosure
Lynx before 2.8.9dev.16 is vulnerable to a use after free in the HTML parser resulting in memory disclosure, because HTML_put_string() can append a chunk onto itself.
Statement: This issue did not affect the versions of lynx as shipped with Red Hat Enterprise Linux 5 and 6.
This issue affects the versions of lynx as shipped with Red Hat Enterprise Linux 7. Red Hat Product Security has rated this issue as having Low security impact. This issue is not currently planned to be addressed in future updates. For additional information, refer to the Issue Severity Classification: https://access.redhat.com/security/updates/classification/.
Package: lynx (Red Hat Enterprise Linux 5) - Not affected
Package: lynx (Red H
Debian
CVE-2017-1000211: lynx - Lynx before 2.8.9dev.16 is vulnerable to a use after free in the HTML parser res...
vendor_debian·2017·CVSS 5.3
CVE-2017-1000211 [MEDIUM] CVE-2017-1000211: lynx - Lynx before 2.8.9dev.16 is vulnerable to a use after free in the HTML parser res...
Lynx before 2.8.9dev.16 is vulnerable to a use after free in the HTML parser resulting in memory disclosure, because HTML_put_string() can append a chunk onto itself.
Scope: local
bookworm: resolved (fixed in 2.8.9dev16-1)
bullseye: resolved (fixed in 2.8.9dev16-1)
forky: resolved (fixed in 2.8.9dev16-1)
sid: resolved (fixed in 2.8.9dev16-1)
trixie: resolved (fixed in 2.8.9dev16-1)
GHSA
GHSA-6qv4-ghq2-3r52: Lynx before 2
ghsa_unreviewed·2022-05-14
CVE-2017-1000211 [MEDIUM] CWE-416 GHSA-6qv4-ghq2-3r52: Lynx before 2
Lynx before 2.8.9dev.16 is vulnerable to a use after free in the HTML parser resulting in memory disclosure, because HTML_put_string() can append a chunk onto itself.
OSV
lynx vulnerabilities
osv·2021-03-15·CVSS 7.5
CVE-2016-9179 [HIGH] lynx vulnerabilities
lynx vulnerabilities
It was discovered that Lynx incorrectly handled certain URLs. A remote attacker
could possibly use this issue to obtain sensitive information or other
unspecified impact. This issue only affected Ubuntu 16.04 ESM.
(CVE-2016-9179)
It was discovered that Lynx incorrectly handled certain HTML files. A remote
attacker could possibly use this issue to obtain sensitive information.
This issue only affected Ubuntu 16.04 ESM. (CVE-2017-1000211)
Thorsten Glaser discovered that Lynx mishandles the userinfo subcomponents of
a URI. An attacker monitoring the network could discover cleartext
credentials because they may appear in SNI data. (CVE-2021-38165)
OSV
CVE-2017-1000211: Lynx before 2
osv·2017-11-17·CVSS 5.3
CVE-2017-1000211 [MEDIUM] CVE-2017-1000211: Lynx before 2
Lynx before 2.8.9dev.16 is vulnerable to a use after free in the HTML parser resulting in memory disclosure, because HTML_put_string() can append a chunk onto itself.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2017-1000211 lynx: Use after free in HTML.c:HTML_put_string() can lead to memory disclosure
bugzilla·2017-12-06·CVSS 5.3
CVE-2017-1000211 [MEDIUM] CVE-2017-1000211 lynx: Use after free in HTML.c:HTML_put_string() can lead to memory disclosure
CVE-2017-1000211 lynx: Use after free in HTML.c:HTML_put_string() can lead to memory disclosure
Lynx before 2.8.9dev.16 is vulnerable to a use after free in the HTML parser resulting in memory disclosure, because HTML.c:HTML_put_string() can append a chunk onto itself.
References:
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2017-1000211
http://people.canonical.com/~ubuntu-security/cve/2017/CVE-2017-1000211.html
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-1000211
https://github.com/ThomasDickey/lynx-snapshots/commit/280a61b300a1614f6037efc0902ff7ecf17146e9
Discussion:
Created lynx tracking bugs for this issue:
Affects: fedora-25 [bug 1522618]
Affects: fedora-26 [bug 1522619]
---
It makes no sense to create tracking bugs for each release of Fedora separately when th
Bugzilla
CVE-2017-1000211 lynx: Use after free in HTML.c:HTML_put_string() can lead to memory disclosure [fedora-25]
bugzilla·2017-12-06·CVSS 5.3
CVE-2017-1000211 [MEDIUM] CVE-2017-1000211 lynx: Use after free in HTML.c:HTML_put_string() can lead to memory disclosure [fedora-25]
CVE-2017-1000211 lynx: Use after free in HTML.c:HTML_put_string() can lead to memory disclosure [fedora-25]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-25.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
Discussion:
Use the fo
Bugzilla
CVE-2017-1000211 lynx: Use after free in HTML.c:HTML_put_string() can lead to memory disclosure [fedora-26]
bugzilla·2017-12-06·CVSS 5.3
CVE-2017-1000211 [MEDIUM] CVE-2017-1000211 lynx: Use after free in HTML.c:HTML_put_string() can lead to memory disclosure [fedora-26]
CVE-2017-1000211 lynx: Use after free in HTML.c:HTML_put_string() can lead to memory disclosure [fedora-26]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-26.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
Discussion:
Use the fo
http://lynx.invisible-island.net/current/CHANGES.htmlhttp://www.securityfocus.com/bid/102180https://github.com/ThomasDickey/lynx-snapshots/commit/280a61b300a1614f6037efc0902ff7ecf17146e9https://lists.debian.org/debian-lts-announce/2017/11/msg00021.htmlhttp://lynx.invisible-island.net/current/CHANGES.htmlhttp://www.securityfocus.com/bid/102180https://github.com/ThomasDickey/lynx-snapshots/commit/280a61b300a1614f6037efc0902ff7ecf17146e9https://lists.debian.org/debian-lts-announce/2017/11/msg00021.html
2017-11-17
Published