Debian W3M vulnerabilities
42 known vulnerabilities affecting debian/w3m.
Total CVEs
42
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH8MEDIUM29LOW5
Vulnerabilities
Page 2 of 3
CVE-2016-9432P4MEDIUMCVSS 6.5fixed in w3m 0.5.3-30 (bookworm)2016
CVE-2016-9432 [MEDIUM] CVE-2016-9432: w3m - An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m a...
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote attackers to cause a denial of service (memory corruption, segmentation fault, and crash) via a crafted HTML page.
Scope: local
bookworm: resolved (fixed in 0.5.3-30)
bullseye: resolved (fixed in 0.5.3-30)
forky: resolved (fixed in 0.5.3-30)
sid: resolved (fixed in 0.5.3-30)
tri
debian
CVE-2016-9431P4MEDIUMCVSS 6.5fixed in w3m 0.5.3-30 (bookworm)2016
CVE-2016-9431 [MEDIUM] CVE-2016-9431: w3m - An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Infin...
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Infinite recursion vulnerability in w3m allows remote attackers to cause a denial of service via a crafted HTML page.
Scope: local
bookworm: resolved (fixed in 0.5.3-30)
bullseye: resolved (fixed in 0.5.3-30)
forky: resolved (fixed in 0.5.3-30)
sid: resolved (fixed in 0.5.3-30)
trixie: resolved (
debian
CVE-2016-9626P4MEDIUMCVSS 6.5fixed in w3m 0.5.3-33 (bookworm)2016
CVE-2016-9626 [MEDIUM] CVE-2016-9626: w3m - An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. Infin...
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. Infinite recursion vulnerability in w3m allows remote attackers to cause a denial of service via a crafted HTML page.
Scope: local
bookworm: resolved (fixed in 0.5.3-33)
bullseye: resolved (fixed in 0.5.3-33)
forky: resolved (fixed in 0.5.3-33)
sid: resolved (fixed in 0.5.3-33)
trixie: resolved (
debian
CVE-2016-9625P4MEDIUMCVSS 6.5fixed in w3m 0.5.3-33 (bookworm)2016
CVE-2016-9625 [MEDIUM] CVE-2016-9625: w3m - An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. Infin...
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. Infinite recursion vulnerability in w3m allows remote attackers to cause a denial of service via a crafted HTML page.
Scope: local
bookworm: resolved (fixed in 0.5.3-33)
bullseye: resolved (fixed in 0.5.3-33)
forky: resolved (fixed in 0.5.3-33)
sid: resolved (fixed in 0.5.3-33)
trixie: resolved (
debian
CVE-2016-9622P4MEDIUMCVSS 6.5fixed in w3m 0.5.3-33 (bookworm)2016
CVE-2016-9622 [MEDIUM] CVE-2016-9622: w3m - An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. w3m a...
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page.
Scope: local
bookworm: resolved (fixed in 0.5.3-33)
bullseye: resolved (fixed in 0.5.3-33)
forky: resolved (fixed in 0.5.3-33)
sid: resolved (fixed in 0.5.3-33)
trixie: resolved (fixed
debian
CVE-2016-9439P4MEDIUMCVSS 6.5fixed in w3m 0.5.3-33 (bookworm)2016
CVE-2016-9439 [MEDIUM] CVE-2016-9439: w3m - An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Infin...
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Infinite recursion vulnerability in w3m allows remote attackers to cause a denial of service via a crafted HTML page.
Scope: local
bookworm: resolved (fixed in 0.5.3-33)
bullseye: resolved (fixed in 0.5.3-33)
forky: resolved (fixed in 0.5.3-33)
sid: resolved (fixed in 0.5.3-33)
trixie: resolved (
debian
CVE-2016-9631P4MEDIUMCVSS 6.5fixed in w3m 0.5.3-33 (bookworm)2016
CVE-2016-9631 [MEDIUM] CVE-2016-9631: w3m - An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. w3m a...
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page.
Scope: local
bookworm: resolved (fixed in 0.5.3-33)
bullseye: resolved (fixed in 0.5.3-33)
forky: resolved (fixed in 0.5.3-33)
sid: resolved (fixed in 0.5.3-33)
trixie: resolved (fixed
debian
CVE-2016-9633P4MEDIUMCVSS 6.5fixed in w3m 0.5.3-33 (bookworm)2016
CVE-2016-9633 [MEDIUM] CVE-2016-9633: w3m - An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. w3m a...
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. w3m allows remote attackers to cause a denial of service (infinite loop and resource consumption) via a crafted HTML page.
Scope: local
bookworm: resolved (fixed in 0.5.3-33)
bullseye: resolved (fixed in 0.5.3-33)
forky: resolved (fixed in 0.5.3-33)
sid: resolved (fixed in 0.5.3-33)
trixie: resol
debian
CVE-2016-9623P4MEDIUMCVSS 6.5fixed in w3m 0.5.3-33 (bookworm)2016
CVE-2016-9623 [MEDIUM] CVE-2016-9623: w3m - An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. w3m a...
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page.
Scope: local
bookworm: resolved (fixed in 0.5.3-33)
bullseye: resolved (fixed in 0.5.3-33)
forky: resolved (fixed in 0.5.3-33)
sid: resolved (fixed in 0.5.3-33)
trixie: resolved (fixed
debian
CVE-2016-9624P4MEDIUMCVSS 6.5fixed in w3m 0.5.3-33 (bookworm)2016
CVE-2016-9624 [MEDIUM] CVE-2016-9624: w3m - An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. w3m a...
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page.
Scope: local
bookworm: resolved (fixed in 0.5.3-33)
bullseye: resolved (fixed in 0.5.3-33)
forky: resolved (fixed in 0.5.3-33)
sid: resolved (fixed in 0.5.3-33)
trixie: resolved (fixed
debian
CVE-2016-9629P4MEDIUMCVSS 6.5fixed in w3m 0.5.3-33 (bookworm)2016
CVE-2016-9629 [MEDIUM] CVE-2016-9629: w3m - An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. w3m a...
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page.
Scope: local
bookworm: resolved (fixed in 0.5.3-33)
bullseye: resolved (fixed in 0.5.3-33)
forky: resolved (fixed in 0.5.3-33)
sid: resolved (fixed in 0.5.3-33)
trixie: resolved (fixed
debian
CVE-2016-9628P4MEDIUMCVSS 6.5fixed in w3m 0.5.3-33 (bookworm)2016
CVE-2016-9628 [MEDIUM] CVE-2016-9628: w3m - An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. w3m a...
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page.
Scope: local
bookworm: resolved (fixed in 0.5.3-33)
bullseye: resolved (fixed in 0.5.3-33)
forky: resolved (fixed in 0.5.3-33)
sid: resolved (fixed in 0.5.3-33)
trixie: resolved (fixed
debian
CVE-2016-9441P4MEDIUMCVSS 6.5fixed in w3m 0.5.3-30 (bookworm)2016
CVE-2016-9441 [MEDIUM] CVE-2016-9441: w3m - An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m a...
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page.
Scope: local
bookworm: resolved (fixed in 0.5.3-30)
bullseye: resolved (fixed in 0.5.3-30)
forky: resolved (fixed in 0.5.3-30)
sid: resolved (fixed in 0.5.3-30)
trixie: resolved (fixed
debian
CVE-2016-9443P4MEDIUMCVSS 6.5fixed in w3m 0.5.3-30 (bookworm)2016
CVE-2016-9443 [MEDIUM] CVE-2016-9443: w3m - An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m a...
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page.
Scope: local
bookworm: resolved (fixed in 0.5.3-30)
bullseye: resolved (fixed in 0.5.3-30)
forky: resolved (fixed in 0.5.3-30)
sid: resolved (fixed in 0.5.3-30)
trixie: resolved (fixed
debian
CVE-2016-9430P4MEDIUMCVSS 6.5fixed in w3m 0.5.3-30 (bookworm)2016
CVE-2016-9430 [MEDIUM] CVE-2016-9430: w3m - An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m a...
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page.
Scope: local
bookworm: resolved (fixed in 0.5.3-30)
bullseye: resolved (fixed in 0.5.3-30)
forky: resolved (fixed in 0.5.3-30)
sid: resolved (fixed in 0.5.3-30)
trixie: resolved (fixed
debian
CVE-2016-9438P4MEDIUMCVSS 6.5fixed in w3m 0.5.3-30 (bookworm)2016
CVE-2016-9438 [MEDIUM] CVE-2016-9438: w3m - An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m a...
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page.
Scope: local
bookworm: resolved (fixed in 0.5.3-30)
bullseye: resolved (fixed in 0.5.3-30)
forky: resolved (fixed in 0.5.3-30)
sid: resolved (fixed in 0.5.3-30)
trixie: resolved (fixed
debian
CVE-2016-9440P4MEDIUMCVSS 6.5fixed in w3m 0.5.3-30 (bookworm)2016
CVE-2016-9440 [MEDIUM] CVE-2016-9440: w3m - An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m a...
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page.
Scope: local
bookworm: resolved (fixed in 0.5.3-30)
bullseye: resolved (fixed in 0.5.3-30)
forky: resolved (fixed in 0.5.3-30)
sid: resolved (fixed in 0.5.3-30)
trixie: resolved (fixed
debian
CVE-2016-9434P4MEDIUMCVSS 6.5fixed in w3m 0.5.3-30 (bookworm)2016
CVE-2016-9434 [MEDIUM] CVE-2016-9434: w3m - An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m a...
An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page.
Scope: local
bookworm: resolved (fixed in 0.5.3-30)
bullseye: resolved (fixed in 0.5.3-30)
forky: resolved (fixed in 0.5.3-30)
sid: resolved (fixed in 0.5.3-30)
trixie: resolved (fixed
debian
CVE-2018-6198P4LOWCVSS 4.7fixed in w3m 0.5.3-36 (bookworm)2018
CVE-2018-6198 [MEDIUM] CVE-2018-6198: w3m - w3m through 0.5.3 does not properly handle temporary files when the ~/.w3m direc...
w3m through 0.5.3 does not properly handle temporary files when the ~/.w3m directory is unwritable, which allows a local attacker to craft a symlink attack to overwrite arbitrary files.
Scope: local
bookworm: resolved (fixed in 0.5.3-36)
bullseye: resolved (fixed in 0.5.3-36)
forky: resolved (fixed in 0.5.3-36)
sid: resolved (fixed in 0.5.3-36)
trixie: resolved (fixed i
debian
CVE-2023-4255P4MEDIUMCVSS 5.5fixed in w3m 0.5.3+git20230121-2.1 (forky)2023
CVE-2023-4255 [MEDIUM] CVE-2023-4255: w3m - An out-of-bounds write issue has been discovered in the backspace handling of th...
An out-of-bounds write issue has been discovered in the backspace handling of the checkType() function in etc.c within the W3M application. This vulnerability is triggered by supplying a specially crafted HTML file to the w3m binary. Exploitation of this flaw could lead to application crashes, resulting in a denial of service condition.
Scope: local
bookworm: open
bulls
debian