CVE-2022-38223
Summary
| CVE | CVE-2022-38223 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-08-15 11:21:00 UTC |
| Updated | 2024-03-27 03:15:00 UTC |
| Description | There is an out-of-bounds write in checkType located in etc.c in w3m 0.5.3. It can be triggered by sending a crafted HTML file to the w3m binary. It allows an attacker to cause Denial of Service or possibly have unspecified other impact. |
NVD Known Affected Configurations (CPE 2.3)
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 181943 Debian Security Update for w3m (CVE-2022-38223)
- 199095 Ubuntu Security Notification for w3m Vulnerability (USN-5796-1)
- 199548 Ubuntu Security Notification for w3m Vulnerability (USN-5796-2)
- 283573 Fedora Security Update for w3m (FEDORA-2022-ce04ff8b49)
- 283574 Fedora Security Update for w3m (FEDORA-2022-7d2f942be2)
- 285394 Fedora Security Update for w3m (FEDORA-2024-38c2261ca0)
- 285395 Fedora Security Update for w3m (FEDORA-2024-3fc66f8bf3)
- 502964 Alpine Linux Security Update for w3m
- 503274 Alpine Linux Security Update for w3m
- 506266 Alpine Linux Security Update for w3m
- 6000050 Debian Security Update for w3m (DLA 3541-1)
- 753525 SUSE Enterprise Linux Security Update for w3m (SUSE-SU-2023:0065-1)
- 753534 SUSE Enterprise Linux Security Update for w3m (SUSE-SU-2023:0066-1)