Lucene search

K
osvGoogleOSV:USN-4800-1
HistoryMar 15, 2021 - 9:24 p.m.

lynx vulnerabilities

2021-03-1521:24:24
Google
osv.dev
11
lynx
ubuntu 16.04 esm
vulnerabilities
url handling
html files
sensitive information
cleartext credentials
cve-2016-9179
cve-2017-1000211
cve-2021-38165

AI Score

7.5

Confidence

High

EPSS

0.006

Percentile

78.9%

It was discovered that Lynx incorrectly handled certain URLs. A remote attacker
could possibly use this issue to obtain sensitive information or other
unspecified impact. This issue only affected Ubuntu 16.04 ESM.
(CVE-2016-9179)

It was discovered that Lynx incorrectly handled certain HTML files. A remote
attacker could possibly use this issue to obtain sensitive information.
This issue only affected Ubuntu 16.04 ESM. (CVE-2017-1000211)

Thorsten Glaser discovered that Lynx mishandles the userinfo subcomponents of
a URI. An attacker monitoring the network could discover cleartext
credentials because they may appear in SNI data. (CVE-2021-38165)