Out-of-Bounds Write Vulnerability in w3m 0.5.3's checkType Function

Out-of-Bounds Write Vulnerability in w3m 0.5.3's checkType Function

CVE-2022-38223 · HIGH Severity

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

There is an out-of-bounds write in checkType located in etc.c in w3m 0.5.3. It can be triggered by sending a crafted HTML file to the w3m binary. It allows an attacker to cause Denial of Service or possibly have unspecified other impact.

Learn more about our Web Application Penetration Testing UK.