Heap-based buffer overflow in the convert_to_idna function in WWW/Library/Implementation/HTParse.c in Lynx 2.8.8dev.1 through 2.8.8dev.4 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a malformed URL containing a % (percent) character in the domain name.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2010-08-20T17:00:00

Updated: 2024-08-07T02:46:48.539Z

Reserved: 2010-07-22T00:00:00

Link: CVE-2010-2810

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2010-08-20T18:00:02.250

Modified: 2024-11-21T01:17:25.233

Link: CVE-2010-2810

cve-icon Redhat

Severity :

Publid Date: 2010-08-05T00:00:00Z

Links: CVE-2010-2810 - Bugzilla