oss-sec mailing list archives
CVE Request: w3m does not check null bytes CN/subjAltName
From: Ludwig Nussel <ludwig.nussel () suse de>
Date: Mon, 14 Jun 2010 13:25:03 +0200
Hi, Yet another occurrence of CVE-2009-2408, this time in w3m. I tried contacting the w3m developers listed on sourceforge but got no response. In the default configuration the missing null checks don't make the situation worse though as w3m doesn't verify certificates by default ('ssl_verify_server' is off by default). Attached two patches turn on 'ssl_verify_server' and fix the null handling. cu Ludwig -- (o_ Ludwig Nussel //\ V_/_ http://www.suse.de/ SUSE LINUX Products GmbH, GF: Markus Rex, HRB 16746 (AG Nuernberg)
Attachment:
w3m-0.5.2-ssl_verify_server_on.diff
Description:
Attachment:
w3m-0.5.2-nulcn.diff
Description:
Current thread:
- CVE Request: w3m does not check null bytes CN/subjAltName Ludwig Nussel (Jun 14)
- Re: CVE Request: w3m does not check null bytes CN/subjAltName Josh Bressers (Jun 14)