Out-of-bounds write in w3m - CVE-2023-4255
Published: January 2, 2024
Vulnerability details
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to a boundary error when processing untrusted input within the checkType() function in etc.c. A remote attacker can create a specially crafted HTML file, trick the victim into opening it using the affected software, trigger an out-of-bounds write and execute arbitrary code on the target system.
Affected software
SUSE Linux Enterprise High Performance Computing 12
SUSE Linux Enterprise Server 12
SUSE Linux Enterprise Server for SAP Applications 12
Fedora
Ubuntu
w3m (Ubuntu package)
w3m-debuginfo
w3m
w3m-debugsource
Storage Resource Manager
Dell EMC Storage Monitoring and Reporting (SMR)
How to mitigate CVE-2023-4255
w3m-debuginfo - update to 0.5.3.git20161120-161.9.1
w3m - update to 0.5.3.git20161120-161.9.1
w3m-debugsource - update to 0.5.3.git20161120-161.9.1
w3m - addressed in versions 0.5.3-63.git20230121.el7, 0.5.3-63.git20230121.el8, 0.5.3-63.git20230121.el9, 0.5.3-63.git20230121.fc38, 0.5.3-63.git20230121.fc39, 0.5.3-63.git20230121.fc40
Storage Resource Manager - update to 4.10.0.3
Dell EMC Storage Monitoring and Reporting (SMR) - update to 4.10.0.3
External References
Related Security Bulletins
- Remote code execution in W3M
- SUSE update for w3m
- Ubuntu update for w3m
- Fedora 39 update for w3m
- Fedora 40 update for w3m
- Fedora 38 update for w3m
- Fedora EPEL 8 update for w3m
- Fedora EPEL 9 update for w3m
- Fedora EPEL 7 update for w3m
- Multiple vulnerabilities in Dell Storage Resource Manager (SRM) and Dell Storage Monitoring and Reporting (SMR)