USN-399-1: w3m vulnerabilities
3 January 2007
w3m vulnerabilities
Releases
Details
A format string vulnerability was discovered in w3m. If a user were
tricked into visiting an HTTPS URL protected by a specially crafted SSL
certificate, an attacker could execute arbitrary code with user
privileges.
Update instructions
The problem can be corrected by updating your system to the following package versions:
Ubuntu 6.10
-
w3m
-
0.5.1-4ubuntu2.6.10
Ubuntu 6.06
-
w3m
-
0.5.1-4ubuntu2.6.06
Ubuntu 5.10
-
w3m
-
0.5.1-3ubuntu1.1
In general, a standard system upgrade is sufficient to effect the
necessary changes.