w3m (0.5.3-26ubuntu0.2) xenial-security; urgency=medium
* SECURITY UPDATE: Infinite recursion flaw in HTMLlineproc0
- debian/patches/CVE-2018-6196.patch: prevent negative indent value
in table.c.
- CVE-2018-6196
* SECURITY UPDATE: NULL pointer dereference flaw in formUpdateBuffer
- debian/patches/CVE-2018-6197.patch: prevent invalid columnPos() call
in form.c.
- CVE-2018-6197
* SECURITY UPDATE: does not properly handle temp files
- debian/patches/CVE-218-6198.patch: make temp directory safely
in config.h.dist, config.h.in, configure, configure.ac, main.c and rc.c.
- CVE-2018-6198
Date: 2018-01-30 19:48:15.510893+00:00
Changed-By: leo.barb...@canonical.com (Leonidas S. Barbosa)
Signed-By: Ubuntu Archive Robot
<cjwatson+ubuntu-archive-ro...@chiark.greenend.org.uk>
https://launchpad.net/ubuntu/+source/w3m/0.5.3-26ubuntu0.2
Sorry, changesfile not available.
--
Xenial-changes mailing list
Xenial-changes@lists.ubuntu.com
Modify settings or unsubscribe at:
https://lists.ubuntu.com/mailman/listinfo/xenial-changes