VDB

CVE-2005-3120

CVE-2005-3120 PUBLISHED CVSS 9.800000190734863 CRITICAL

Stack-based buffer overflow in the HTrjis function in Lynx 2.8.6 and earlier allows remote NNTP servers to execute arbitrary code via certain article headers containing Asian characters that cause Lynx to add extra escape (ESC) characters.

EPSS 23.26% · 97.6th percentile

Risk Scores

CVSS 3.1
9.800000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
23.26%
97.6th percentile

Affected Products

VendorProductVersions
n/an/a*
invisible-islandlynx0
debiandebian_linux3.0, 3.1

Timeline

  • Oct 17, 2005 CVE Published
  • Feb 4, 2022 EPSS Score
  • Mar 29, 2022 EPSS Score
  • May 20, 2022 EPSS Score
  • Jul 12, 2022 EPSS Score
  • Oct 27, 2022 EPSS Score
  • Dec 18, 2022 EPSS Score
  • Feb 9, 2023 EPSS Score
  • Mar 7, 2023 EPSS Score
  • Apr 3, 2023 EPSS Score
  • May 26, 2023 EPSS Score
  • Jul 17, 2023 EPSS Score

References

…and 17 more

Open in Interactive Console →
$ Console Community · 100/wk Open console ›