
CVE-2016-9434 – Gentoo Linux Security Advisory 201701-08
https://notcve.org/view.php?id=CVE-2016-9434
12 Dec 2016 — An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page. Se descubrió un problema en el fork de Tatsuya Kinoshita w3m en versiones anteriores a 0.5.3-31. w3m permite a atacantes remotos provocar una denegación de servicio (error de segmentación y caída) a través de una página HTML manipulada. A large number of security issues were discovered in the w3m browser. If a user were tr... • http://www.openwall.com/lists/oss-security/2016/11/18/3 • CWE-476: NULL Pointer Dereference •

CVE-2016-9425 – Gentoo Linux Security Advisory 201701-08
https://notcve.org/view.php?id=CVE-2016-9425
12 Dec 2016 — An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Heap-based buffer overflow in the addMultirowsForm function in w3m allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTML page. Se descubrió un problema en el fork de Tatsuya Kinoshita w3m en versiones anteriores a 0.5.3-31. Desbordamiento de búfer basado en memoria dinámica en la función addMultirowsForm en w3m permite a atacantes remotos provocar una denegación de servici... • http://www.openwall.com/lists/oss-security/2016/11/18/3 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2016-9626 – Ubuntu Security Notice USN-3214-1
https://notcve.org/view.php?id=CVE-2016-9626
12 Dec 2016 — An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. Infinite recursion vulnerability in w3m allows remote attackers to cause a denial of service via a crafted HTML page. Se descubrió un problema en el fork de Tatsuya Kinoshita w3m en versiones anteriores a 0.5.3-33. Vulnerabilidad de recursión infinita en w3m permite a atacantes remotos provocar una denegación de servicio a través de una página HTML manipulada. A large number of security issues were discovered in the w3m browser. • http://www.openwall.com/lists/oss-security/2016/11/24/1 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2016-9428 – Gentoo Linux Security Advisory 201701-08
https://notcve.org/view.php?id=CVE-2016-9428
12 Dec 2016 — An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Heap-based buffer overflow in the addMultirowsForm function in w3m allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTML page. Se descubrió un problema en el fork de Tatsuya Kinoshita w3m en versiones anteriores a 0.5.3-31. Desbordamiento de búfer basado en memoria dinámica en la función addMultirowsForm en w3m permite a atacantes remotos provocar una denegación de servici... • http://www.openwall.com/lists/oss-security/2016/11/18/3 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •

CVE-2016-9433 – Gentoo Linux Security Advisory 201701-08
https://notcve.org/view.php?id=CVE-2016-9433
12 Dec 2016 — An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote attackers to cause a denial of service (out-of-bounds array access) via a crafted HTML page. Se descubrió un problema en el fork de Tatsuya Kinoshita w3m en versiones anteriores a 0.5.3-31. w3m permite a atacantes remotos provocar una denegación de servicio (acceso al array fuera de los límites) a través de una página HTML manipulada. A large number of security issues were discovered in the w3m browser. If a user we... • http://www.openwall.com/lists/oss-security/2016/11/18/3 • CWE-125: Out-of-bounds Read •

CVE-2016-9632 – Ubuntu Security Notice USN-3214-1
https://notcve.org/view.php?id=CVE-2016-9632
12 Dec 2016 — An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. w3m allows remote attackers to cause a denial of service (global buffer overflow and crash) via a crafted HTML page. Se descubrió un problema en el fork de Tatsuya Kinoshita w3m en versiones anteriores a 0.5.3-33. w3m permite a atacantes remotos provocar una denegación de servicio (desbordamiento global del búfer y caída) a través de una página HTML manipulada. A large number of security issues were discovered in the w3m browser. If ... • http://www.openwall.com/lists/oss-security/2016/11/24/1 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2016-9422 – Gentoo Linux Security Advisory 201701-08
https://notcve.org/view.php?id=CVE-2016-9422
12 Dec 2016 — An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. The feed_table_tag function in w3m doesn't properly validate the value of table span, which allows remote attackers to cause a denial of service (stack and/or heap buffer overflow) and possibly execute arbitrary code via a crafted HTML page. Se descubrió un problema en el fork de Tatsuya Kinoshita w3m en versiones anteriores a 0.5.3-31. La función feed_table_tag en w3m no valida adecuadamente el valor span de tabla, lo que permite a ... • http://www.openwall.com/lists/oss-security/2016/11/18/3 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2016-9426 – Gentoo Linux Security Advisory 201701-08
https://notcve.org/view.php?id=CVE-2016-9426
12 Dec 2016 — An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Integer overflow vulnerability in the renderTable function in w3m allows remote attackers to cause a denial of service (OOM) and possibly execute arbitrary code due to bdwgc's bug (CVE-2016-9427) via a crafted HTML page. Se descubrió un problema en el fork de Tatsuya Kinoshita w3m en versiones anteriores a 0.5.3-31. Vulnerabilidad de desbordamiento de entero en la función renderTable en w3m permite a atacantes remotos provocar una de... • http://www.openwall.com/lists/oss-security/2016/11/18/3 • CWE-190: Integer Overflow or Wraparound •

CVE-2016-9440 – Gentoo Linux Security Advisory 201701-08
https://notcve.org/view.php?id=CVE-2016-9440
12 Dec 2016 — An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page. Se descubrió un problema en el fork de Tatsuya Kinoshita w3m en versiones anteriores a 0.5.3-31. w3m permite a atacantes remotos provocar una denegación de servicio (error de segmentación y caída) a través de una página HTML manipulada. A large number of security issues were discovered in the w3m browser. If a user were tr... • http://www.openwall.com/lists/oss-security/2016/11/18/3 • CWE-476: NULL Pointer Dereference •

CVE-2016-9628 – Ubuntu Security Notice USN-3214-1
https://notcve.org/view.php?id=CVE-2016-9628
12 Dec 2016 — An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-33. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page. Se descubrió un problema en el fork de Tatsuya Kinoshita w3m en versiones anteriores a 0.5.3-33. w3m permite a atacantes remotos provocar una denegación de servicio (error de segmentación y caída) a través de una página HTML manipulada. A large number of security issues were discovered in the w3m browser. If a user were tr... • http://www.openwall.com/lists/oss-security/2016/11/24/1 • CWE-476: NULL Pointer Dereference •