wheezy (security)2.8.8dev.12-2+deb7u2

Open issues

CVE-2017-1000211fixedvulnerable (no DSA)Lynx before 2.8.9dev.16 is vulnerable to a use after free in the HTML ...
CVE-2016-9179fixedvulnerable (no DSA)lynx: It was found that Lynx doesn't parse the authority component of ...
CVE-2012-5821vulnerable (no DSA)fixedLynx does not verify that the server's certificate is signed by a ...

Resolved issues

TEMP-0000000-0D6EB6crash when parsing overly long links
CVE-2010-2810Heap-based buffer overflow in the convert_to_idna function in ...
CVE-2006-7234Untrusted search path vulnerability in Lynx before 2.8.6rel.4 allows ...
CVE-2005-3120Stack-based buffer overflow in the HTrjis function in Lynx 2.8.6 and ...
CVE-2004-1617Lynx, lynx-ssl, and lynx-cur before 2.8.6dev.8 allow remote attackers ...

Security announcements

DSA / DLADescription
DLA-1175-1lynx-cur - security update
DLA-719-1lynx-cur - security update
DSA-1085-1lynx-cur - several vulnerabilities
