Back

MEDIUM

W3m: out-of-bounds write in function checktype() in etc.c (incomplete fix for cve-2022-38223)

Published Dec 21, 2023

Description

An out-of-bounds write issue has been discovered in the backspace handling of the checkType() function in etc.c within the W3M application. This vulnerability is triggered by supplying a specially crafted HTML file to the w3m binary. Exploitation of this flaw could lead to application crashes, resulting in a denial of service condition.

Affected products

Remediation

No remediation recorded yet.

References (8)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Dec 21, 2023
Updated Feb 13, 2025
Reserved Aug 8, 2023
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner redhat
Published Dec 21, 2023
Updated Feb 13, 2025
Exploited since n/a
EUVD-2023-54126