info
discussion
exploit
solution
references
W3M Malformed MIME Header Buffer Overflow Vulnerability
Solution:
Source code patches that rectify this issue were posted to the w3m developers' mailing list. Links to the archive of these posts can be found in the references section.
W3M W3M 0.1.10
Conectiva 6.0 i386 w3m-0.2.1-4U60_1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/6.0/SRPMS/w3m-0.2.1-4U60_1cl.i386. rpm
Debian 2.2 alpha w3m-ssl_0.1.10+0.1.11pre+kokb23-4_alpha.deb
http://security.debian.org/dists/stable/updates/main/binary-alpha/w3m- ssl_0.1.10+0.1.11pre+kokb23-4_alpha.deb
Debian 2.2 alpha w3m_0.1.10+0.1.11pre+kokb23-4_alpha.deb
http://security.debian.org/dists/stable/updates/main/binary-alpha/w3m_ 0.1.10+0.1.11pre+kokb23-4_alpha.deb
Debian 2.2 arm w3m-ssl_0.1.10+0.1.11pre+kokb23-4_arm.deb
http://security.debian.org/dists/stable/updates/main/binary-arm/w3m-ss l_0.1.10+0.1.11pre+kokb23-4_arm.deb
Debian 2.2 arm w3m_0.1.10+0.1.11pre+kokb23-4_arm.deb
http://security.debian.org/dists/stable/updates/main/binary-arm/w3m_0. 1.10+0.1.11pre+kokb23-4_arm.deb
Debian 2.2 i386 w3m-ssl_0.1.10+0.1.11pre+kokb23-4_i386.deb
http://security.debian.org/dists/stable/updates/main/binary-i386/w3m-s sl_0.1.10+0.1.11pre+kokb23-4_i386.deb
Debian 2.2 i386 w3m_0.1.10+0.1.11pre+kokb23-4_i386.deb
http://security.debian.org/dists/stable/updates/main/binary-i386/w3m_0 .1.10+0.1.11pre+kokb23-4_i386.deb
Debian 2.2 sparc w3m-ssl_0.1.10+0.1.11pre+kokb23-4_sparc.deb
http://security.debian.org/dists/stable/updates/main/binary-sparc/w3m- ssl_0.1.10+0.1.11pre+kokb23-4_sparc.deb
Debian 2.2 sparc w3m_0.1.10+0.1.11pre+kokb23-4_sparc.deb
http://security.debian.org/dists/stable/updates/main/binary-sparc/w3m_ 0.1.10+0.1.11pre+kokb23-4_sparc.deb
W3M W3M 0.1.9
Conectiva 5.0 i386 w3m-0.2.1-4U50_1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/5.0/SRPMS/w3m-0.2.1-4U50_1cl.i386. rpm
Conectiva 5.1 i386 w3m-0.2.1-4U51_1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/5.1/SRPMS/w3m-0.2.1-4U51_1cl.i386. rpm
W3M W3M 0.2.1
Conectiva 7.0 i386 w3m-0.2.1-4U70_1cl.i386.rpm
ftp://atualizacoes.conectiva.com.br/7.0/SRPMS/w3m-0.2.1-4U70_1cl.i386. rpm
Privacy Statement
Copyright 2010, SecurityFocus