VEXID-7028544
Published 2017-01-20 15:59:00
Last Modified 2026-06-17 00:56:02
AKA CVE-2016-9436
Summary parsetagx.c in w3m before 0.5.3+git20161009 does not properly initialize values, which allows remote attackers to crash the application via a crafted html file, related to a tag.
CVSS Score 4.3
CVSS
Access Vector Local Adjacent Network
Access Complexity Low Medium High
Authentication None Single Multiple
Confidentiality None Partial Complete
Integrity None Partial Complete
Availability None Partial Complete