Security update for w3m
This update for w3m fixes the following issues: - update to debian git version (bsc#1011293) addressed security issues: CVE-2016-9621: w3m: global-buffer-overflow write (bsc#1012020) CVE-2016-9622: w3m: null deref (bsc#1012021) CVE-2016-9623: w3m: null deref (bsc#1012022) CVE-2016-9624: w3m: near-null deref (bsc#1012023) CVE-2016-9625: w3m: stack overflow (bsc#1012024) CVE-2016-9626: w3m: stack overflow (bsc#1012025) CVE-2016-9627: w3m: heap overflow read + deref (bsc#1012026) CVE-2016-9628: w3m: null deref (bsc#1012027) CVE-2016-9629: w3m: null deref (bsc#1012028) CVE-2016-9630: w3m: global-buffer-overflow read (bsc#1012029) CVE-2016-9631: w3m: null deref (bsc#1012030) CVE-2016-9632: w3m: global-buffer-overflow read (bsc#1012031) CVE-2016-9633: w3m: OOM (bsc#1012032) CVE-2016-9434: w3m: null deref (bsc#1011283) CVE-2016-9435: w3m: use uninit value (bsc#1011284) CVE-2016-9436: w3m: use uninit value (bsc#1011285) CVE-2016-9437: w3m: write to rodata (bsc#1011286) CVE-2016-9438: w3m: null deref (bsc#1011287) CVE-2016-9439: w3m: stack overflow (bsc#1011288) CVE-2016-9440: w3m: near-null deref (bsc#1011289) CVE-2016-9441: w3m: near-null deref (bsc#1011290) CVE-2016-9442: w3m: potential heap buffer corruption (bsc#1011291) CVE-2016-9443: w3m: null deref (bsc#1011292)
02 / AFFECTED SOFTWARE
Affected packages
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
This update for w3m fixes the following issues: - update to debian git version (bsc#1011293) addressed security issues: CVE-2016-9621: w3m: global-buffer-overflow write (bsc#1012020) CVE-2016-9622: w3m: null deref (bsc#1012021) CVE-2016-9623: w3m: null deref (bsc#1012022) CVE-2016-9624: w3m: near-null deref (bsc#1012023) CVE-2016-9625: w3m: stack overflow (bsc#1012024) CVE-2016-9626: w3m: stack overflow (bsc#1012025) CVE-2016-9627: w3m: heap overflow read + deref (bsc#1012026) CVE-2016-9628: w3m: null deref (bsc#1012027) CVE-2016-9629: w3m: null deref (bsc#1012028) CVE-2016-9630: w3m: global-buffer-overflow read (bsc#1012029) CVE-2016-9631: w3m: null deref (bsc#1012030) CVE-2016-9632: w3m: global-buffer-overflow read (bsc#1012031) CVE-2016-9633: w3m: OOM (bsc#1012032) CVE-2016-9434: w3m: null deref (bsc#1011283) CVE-2016-9435: w3m: use uninit value (bsc#1011284) CVE-2016-9436: w3m: use uninit value (bsc#1011285) CVE-2016-9437: w3m: write to rodata (bsc#1011286) CVE-2016-9438: w3m: null deref (bsc#1011287) CVE-2016-9439: w3m: stack overflow (bsc#1011288) CVE-2016-9440: w3m: near-null deref (bsc#1011289) CVE-2016-9441: w3m: near-null deref (bsc#1011290) CVE-2016-9442: w3m: potential heap buffer corruption (bsc#1011291) CVE-2016-9443: w3m: null deref (bsc#1011292)
05 / REFERENCES
Further evidence
- https://bugzilla.suse.com/1011269
- https://bugzilla.suse.com/1011270
- https://bugzilla.suse.com/1011271
- https://bugzilla.suse.com/1011272
- https://bugzilla.suse.com/1011283
- https://bugzilla.suse.com/1011284
- https://bugzilla.suse.com/1011285
- https://bugzilla.suse.com/1011286
- https://bugzilla.suse.com/1011287
- https://bugzilla.suse.com/1011288
- https://bugzilla.suse.com/1011289
- https://bugzilla.suse.com/1011290
- https://bugzilla.suse.com/1011291
- https://bugzilla.suse.com/1011292
- https://bugzilla.suse.com/1011293
- https://bugzilla.suse.com/1012020
- https://bugzilla.suse.com/1012021
- https://bugzilla.suse.com/1012022
- https://bugzilla.suse.com/1012023
- https://bugzilla.suse.com/1012024
- https://bugzilla.suse.com/1012025
- https://bugzilla.suse.com/1012026
- https://bugzilla.suse.com/1012027
- https://bugzilla.suse.com/1012028
- https://bugzilla.suse.com/1012029
- https://bugzilla.suse.com/1012030
- https://bugzilla.suse.com/1012031
- https://bugzilla.suse.com/1012032
- https://www.suse.com/security/cve/CVE-2010-2074
- https://www.suse.com/security/cve/CVE-2016-9422
- https://www.suse.com/security/cve/CVE-2016-9423
- https://www.suse.com/security/cve/CVE-2016-9424
- https://www.suse.com/security/cve/CVE-2016-9425
- https://www.suse.com/security/cve/CVE-2016-9434
- https://www.suse.com/security/cve/CVE-2016-9435
- https://www.suse.com/security/cve/CVE-2016-9436
- https://www.suse.com/security/cve/CVE-2016-9437
- https://www.suse.com/security/cve/CVE-2016-9438
- https://www.suse.com/security/cve/CVE-2016-9439
- https://www.suse.com/security/cve/CVE-2016-9440
- https://www.suse.com/security/cve/CVE-2016-9441
- https://www.suse.com/security/cve/CVE-2016-9442
- https://www.suse.com/security/cve/CVE-2016-9443
- https://www.suse.com/security/cve/CVE-2016-9621
- https://www.suse.com/security/cve/CVE-2016-9622
- https://www.suse.com/security/cve/CVE-2016-9623
- https://www.suse.com/security/cve/CVE-2016-9624
- https://www.suse.com/security/cve/CVE-2016-9625
- https://www.suse.com/security/cve/CVE-2016-9626
- https://www.suse.com/security/cve/CVE-2016-9627
- https://www.suse.com/security/cve/CVE-2016-9628
- https://www.suse.com/security/cve/CVE-2016-9629
- https://www.suse.com/security/cve/CVE-2016-9630
- https://www.suse.com/security/cve/CVE-2016-9631
- https://www.suse.com/security/cve/CVE-2016-9632
- https://www.suse.com/security/cve/CVE-2016-9633
- https://www.suse.com/support/update/announcement/2016/suse-su-20163046-1/